ht://dig Arbitrary File Inclusion...

- AV AC AU C I A
发布: 2000-02-29
修订: 2025-04-13

ht://dig is a web content search engine for Unix platforms. The software is set up to allow for file inclusion from configuration files. Any string surrounded by the opening singlw quote character ( ` ) is taken as a path to a file for inclusion, for example: some_parameter: `var/htdig/some_file` htdig will also allow included files to be specified via form input. Therefore, any file can be specified for inclusion into a variable by any web user.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息