TUCoPS :: Web BBS :: Frequently Exploited :: hack7018.htm

YaBBSe 1.5.5c Path disclosure problem ExP:
YaBBSe 1.5.5c Path disclosure problem

-------- Team priestmasters YabbSE 1.5.5c Path disclosure ----------

Software Vendor: 

A path disclosure vuln exist in the ssi_examples.php
file. Exploitation is simple: 

The script show us the full path.

Solution: Remove ssi_examples.php. The file isn't
needed by the forum.

Mail : 
Url : 




