EditTag is a script which facilitates website content management. A file disclosure vulnerability has been reported in the EditTag 'edittag.pl' perl script. Due to insufficient sanitization of CGI parameters a maliciously crafted web request containing encoded directory traversal sequences may result in the disclosure of arbitrary web server readable files.
EditTag is a script which facilitates website content management. A file disclosure vulnerability has been reported in the EditTag 'edittag.pl' perl script. Due to insufficient sanitization of CGI parameters a maliciously crafted web request containing encoded directory traversal sequences may result in the disclosure of arbitrary web server readable files.