CVE-2009-1089 Information

Description

Absolute path traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to read arbitrary files via a base64-encoded absolute path in the filename parameter.

Reference

http://secunia.com/advisories/34300 http://security.bkis.vn/?p=345 http://www.securityfocus.com/archive/1/501854/100/0/threaded http://www.securityfocus.com/bid/34119 https://exchange.xforce.ibmcloud.com/vulnerabilities/49253

Share on: