PHP reveals potentially sensitive information via certain HTTP requests that contain specific QUERY strings.

Disclosed: 2015-02-17 20:21:04 By ba4fe4ca95021d367f8a574 To localize
Unknown
Vulnerability Details
Go to http://www.localize.im/index.php?=PHPB8B5F2A0-3C92-11d3-A3A9-4C7B08C10000 This effectively makes it a security issue since it allows an attacker to scan for a specific vulnerable module and then exploit it.
Actions
View on HackerOne
Report Stats
  • Report ID: 30787
  • State: Closed
  • Substate: resolved
  • Upvotes: 1
Share this report