A vulnerability has been discovered in DynPG CMS, which can be exploited by malicious people to disclose potentially sensitive information or compromise a vulnerable system
You need to log in to the Secunia Community to view the full description of this advisory
If you are not a member of the Secunia community, you can sign up here for free.
Do you have additional information related to this advisory?
Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this
information to email@example.com
Score: -13 Posts: 4 User Since: 26th Mar 2010 System Score: N/A Location: ID
(unknown source) A vulnerability has been discovered in DynPG CMS, which can be exploited by malicious people to disclose potentially sensitive information or compromise a vulnerable system.
Input passed to the "DefineRootToTool" parameter in counter.php (when "inc" is set to any value) is not properly sanitised before being used to include files. This can be exploited to include arbitrary files from remote and local resources via directory traversal attacks and URL-encoded NULL bytes.
Successful exploitation requires that "magic_quotes_gpc" is disabled and "register_globals" is enabled.
The vulnerability is confirmed in version 4.1.0. Other versions may also be affected.