It has been reported that LXR Cross-Referencer does not sufficiently sanitize user-supplied input submitted via URI parameters. Allegedly, the exploitation of this vulnerability may result in the disclosure of arbitrary web server readable files. Successful exploitation may permit the attacker to gain access to sensitive information that may aid in mounting further attacks against the system hosting the software.
It has been reported that LXR Cross-Referencer does not sufficiently sanitize user-supplied input submitted via URI parameters. Allegedly, the exploitation of this vulnerability may result in the disclosure of arbitrary web server readable files. Successful exploitation may permit the attacker to gain access to sensitive information that may aid in mounting further attacks against the system hosting the software.