InfraPower PPS-02-S Q213V1 Local File Disclosure

Discussion in 'News Aggregator' started by Packet Storm, 31 Oct 2016.

  1. Packet Storm

    Packet Storm Guest

    InfraPower PPS-02-S Q213V1 suffers from a file disclosure vulnerability when input passed thru the 'file' parameter to 'ListFile.php' script is not properly verified before being used to read files. This can be exploited to disclose contents of files from local resources.

    Continue reading...
     

Share This Page

Loading...