opendir.php script in PHP-Nuke allows remote attackers to read arbitrary files by specifying the filename as an argument to the requesturl parameter.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-02/0214.html | mailing list exploit vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6512 | vdb entry |