Directory traversal vulnerability in index.php in CoolPHP 1.0-stable allows remote attackers to access arbitrary files and execute local PHP scripts via a .. (dot dot) in the op parameter.
Link | Tags |
---|---|
http://secunia.com/advisories/12850 | third party advisory vendor advisory |
http://www.securityfocus.com/bid/11437 | vdb entry |
http://marc.info/?l=bugtraq&m=109810941419669&w=2 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/17745 | vdb entry |
http://securitytracker.com/id?1011748 | vdb entry vendor advisory |