vendor:
Modules Controller
by:
milw0rm.com
7.5
CVSS
HIGH
Remote File Inclusion/Remote File Disclosure
98, 22
CWE
Product Name: Modules Controller
Affected Version From: 1.1
Affected Version To: 1.1
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2008
WebBiscuits Modules Controller <= 1.1 (RFI/RFD) Multiple Remote Vulnerabilities
WebBiscuits Modules Controller version 1.1 is vulnerable to Remote File Inclusion and Remote File Disclosure. An attacker can exploit this vulnerability to include arbitrary files from remote locations and disclose sensitive information from the server.
Mitigation:
Upgrade to the latest version of WebBiscuits Modules Controller.