18081exploit
http://www.exploit-db.com/exploits/18081 CVE-2011-4813
WHMCompleteSolution (WHMCS) 3.x - 'clientarea.php' Local File Disclosure
Record summary
CVE-2011-4813 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
Directory traversal vulnerability in clientarea.php in WHMCompleteSolution (WHMCS) 3.x.x allows remote attackers to read arbitrary files via an invalid action and a ../ (dot dot slash) in the templatefile parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBWHMCompleteSolution (WHMCS) 3.x - 'clientarea.php' Local File DisclosureExploitDB exploitby red virusNot analyzed1 file
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2011-4813