Points: 200 Description: Darkcoder found a flaw in realistic 12 that allowed him to read any file through the guest.pl script. The bug was that user-input was checked before the uri escape was done, allowing him to specify any character he wanted.
Lectures
No Lectures Given
Comments: Published: 13 comments.
This site is the collective work of the
HackThisSite staff. Please don't reproduce in part or whole without permission.
Page Generated: Sat, 21 Nov 2009 20:44:01 +0000 Exec:
38 Page loaded in 0.20816 seconds! Current Code Revision: 79-Stable