Description: maiosyet has reported a vulnerability in WebIf, which potentially can be exploited by malicious people to disclose sensitive information.
Input passed to the "outconfig" parameter in webif/webif.cgi is not properly verified before being used. This may be exploited to disclose the content of local files.
Solution: Edit the source code to ensure that input is properly verified.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.