Social Site Generator (SSG) 2.0 allows remote malicious users to read arbitrary files via the file parameter to (1) filedload.php, (2) webadmin/download.php, and (3) webadmin/download_file.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
socialsitegenerator social site generator 2.0 |