| |||||||||||||
| ID de Prueba: | 1.3.6.1.4.1.25623.1.0.100161 |
| Categoría: | Web application abuses |
| Título: | NotFTP 'config.php' Local File Include Vulnerability |
| Resumen: | Determine if NotFTP is vulnerable to Local File Include |
| Descripción: | Overview: NotFTP is prone to a local file-include vulnerability because it fails to properly sanitize user-supplied input. An attacker can exploit this vulnerability to view and execute arbitrary local files in the context of the webserver process. This may aid in further attacks. NotFTP 1.3.1 is vulnerable other versions may also be affected. See also: http://www.securityfocus.com/bid/34636 |
| Referencia Cruzada: |
BugTraq ID: 34636 Common Vulnerability Exposure (CVE) ID: CVE-2009-1407 http://www.milw0rm.com/exploits/8504 http://www.securityfocus.com/bid/34636 XForce ISS Database: notftp-config-file-include(49988) http://xforce.iss.net/xforce/xfdb/49988 |
| Copyright | This script is Copyright (C) 2009 Greenbone Networks GmbH |
| Esta es sólo una de 32582 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa. Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora. |
|