RIPS 'file' Parameter Local File Include Vulnerability
BID:52703
Info
RIPS 'file' Parameter Local File Include Vulnerability
| Bugtraq ID: | 52703 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 24 2012 12:00AM |
| Updated: | Mar 24 2012 12:00AM |
| Credit: | localh0t |
| Vulnerable: |
RIPS RIPS 0.53 |
| Not Vulnerable: | |
Discussion
RIPS 'file' Parameter Local File Include Vulnerability
RIPS is prone to a local file-include vulnerability because it fails to sufficiently sanitize user-supplied input.
An attacker can exploit this vulnerability to view files and execute local scripts in the context of the webserver process. This may aid in further attacks.
RIPS 0.53 is vulnerable; other versions may also be affected.
RIPS is prone to a local file-include vulnerability because it fails to sufficiently sanitize user-supplied input.
An attacker can exploit this vulnerability to view files and execute local scripts in the context of the webserver process. This may aid in further attacks.
RIPS 0.53 is vulnerable; other versions may also be affected.