AJAX Security Team

2 exploits Active since Apr 2011
EIP-2026-108365 EXPLOITDB text WRITEUP
Joomla! Component com_hello - 'Controller' Local File Inclusion
CVE-2011-1569 EXPLOITDB text WRITEUP
Douran Portal 3.9.7.8 - Info Disclosure
download.aspx in Douran Portal 3.9.7.8 allows remote attackers to obtain source code of arbitrary files under the web root via (1) a trailing ".", (2) a trailing space, or (3) mixed case in the FileNameAttach parameter.