Vulnerabilities > CVE-2006-6569 - Input Validation vulnerability in Genesistrader 1.0

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
NONE
Availability impact
NONE
network
low complexity
genesistrader
exploit available

Summary

form.php in GenesisTrader 1.0 allows remote attackers to read source code for arbitrary files and obtain sensitive information via the (1) do and (2) chem parameters with a "modfich" floap parameter.

Vulnerable Configurations

Part Description Count
Application
Genesistrader
1

Exploit-Db

descriptionGenesisTrader 1.0 form.php Arbitrary File Source Disclosure. CVE-2006-6569. Webapps exploit for php platform
idEDB-ID:29282
last seen2016-02-03
modified2006-12-14
published2006-12-14
reporterMr_KaLiMaN
sourcehttps://www.exploit-db.com/download/29282/
titleGenesisTrader 1.0 form.php Arbitrary File Source Disclosure