The file manager in AlternC 0.9.5 and previous versions, when warnings are enabled in PHP, allows remote malicious users to obtain sensitive information via certain folder names such as ones composed of JavaScript code, which reveal the path in a warning message.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
alternc alternc |