soaivu / clipbucket

Automatically exported from code.google.com/p/clipbucket
0 stars 0 forks source link

Bug to read any file #378

Closed GoogleCodeExporter closed 8 years ago

GoogleCodeExporter commented 8 years ago
What steps will reproduce the problem?
1. Open /admin_area/plugin.php
2. As folder type ../../../../../
3. As file - file to read - passwd

/admin_area/plugin.php?folder=../../../../../../../../etc&file=passwd

What is the expected output? What do you see instead?
Reads any system file

What version of the product are you using? On what operating system?
2.6

Please provide any additional information below.

Nothing more.

Original issue reported on code.google.com by vsche...@gmail.com on 30 Jan 2013 at 1:49

GoogleCodeExporter commented 8 years ago

Original comment by zomail...@gmail.com on 7 May 2013 at 9:43

GoogleCodeExporter commented 8 years ago
Fixed in 2.7 Rev 1067

Original comment by arslan...@gmail.com on 22 May 2013 at 7:31