Family: CGI abuses --> Category: attack
WebCalendar file reading Vulnerability Scan
Vulnerability Scan Summary
Checks for file reading flaw in WebCalendar
Detailed Explanation for this Vulnerability Test
The remote web server has a PHP script that is affected by a local
file include flaw.
The remote installation of WebCalendar may allow a possible hacker to read
arbitrary files on the remote host by supplying a filename to the
'user_inc' argument of the file 'long.php'.
See also :
Upgrade to WebCalendar 0.9.42 or later.
Medium / CVSS Base Score : 4
Click HERE for more information and discussions on this network vulnerability scan.