mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-08 22:35:37 +02:00
850 B
850 B
CVE-2010-1652
Description
Directory traversal vulnerability in the HelpCenter module in Help Center Live (HCL) 2.0.6 and 2.1.7 allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the file parameter to module.php. NOTE: some of these details are obtained from third party information.
POC
Reference
- http://packetstormsecurity.org/1004-exploits/helpcenterlive-lfi.txt
- http://www.exploit-db.com/exploits/12421
Github
No PoCs found on GitHub currently.