This is a writeup describing a Full Path Disclosure vulnerability in PunBB 1.3.4. The vulnerability allows an attacker to disclose the root path of a website by manipulating input parameters in search.php, userlist.php, and moderate.php.
Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target:PunBB 1.3.4
No auth needed
Prerequisites:Access to the target web application