Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:28473
HistorySep 02, 2012 - 12:00 a.m.

Paliz CMS Full Path Disclosure Vulnerability

2012-09-0200:00:00
vulners.com
20

##################################################################################

Title: Paliz CMS Full Path Disclosure Vulnerability

Vulnerable Version: all versions

Vendor URL: http://palizct.com

Impact: Low

##################################################################################

===========================
Vulnerability Description:

Full Path Disclosure Vulnerability, enable the attacker to see the root path.

==================
Proof Of Concept:

http://[target]/portal/DeskTopModules/Currency/CurrencyAll.aspx?mID=[]

=========
Credits:

HighSecure.ir
Contact: advisories[aT]highsecure[dOt]ir

============
References:

http://www.highsecure.ir/research/20120822-paliz.txt

##################################################################################