Comdev eCommerce wce.download.php Download Vulnerability

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Class:  Input Validation Error  
Vulnerable: Comdev Comdev eCommerce 3.0 

The wce.download.php script (present in two locations) can be passed a "download" http request parameter to download an arbitrary file on the vulnerable server.

Example:

http://www.vulnerable.com/oneadmin/faqsupport/wce.download.php?download=../../config.php

[Index of Archives]     [Linux Security]     [Netfilter]     [PHP]     [Yosemite News]     [Linux Kernel]

  Powered by Linux