ezhttpbench.php in eZ httpbench 1.1 allows remote attackers to read arbitrary files via a full pathname in the AnalyseSite parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Httpbench |
Ez_systems |
1.1 (including) |
1.1 (including) |
References