The com_rss option (rss.php) in (1) Mambo and (2) Joomla! allows remote attackers to obtain sensitive information via an invalid feed parameter, which reveals the path in an error message.
Link | Tags |
---|---|
http://www.kapda.ir/advisory-313.html | |
http://www.securityfocus.com/archive/1/431317/100/0/threaded | mailing list |
http://irannetjob.com/content/view/209/28/ | url repurposed exploit |