Misc : Local File Inclusion - suspicious /etc/passwd found in URL
Description
Local file inclusion detected with /etc/passwd file disclosure.
Default
configuration
Profiles
High
Medium
Low
Internet
Action
Block
Pass
Pass
Block
Alarm Level
Minor
Minor
Ignore
Minor
References
Available since
ASQ v3.5.0
Protects
Wordpress Themes Multiple Vulnerabilities
ZoneMinder Local File Inclusion Vulnerability
WordPress Third-Party Plugins Multiple Vulnerabilities
ZoneMinder Information Disclosure Vulnerability
WordPress Third-Party Plugins Multiple Vulnerabilities
WordPress Third Party Modules Multiple Vulnerabilities
WordPress Third Party Modules Multiple Vulnerabilities
Wordpress Multiple Third Party Plugins Vulnerabilities
Wordpress Multiple Third Party Plugins Vulnerabilities
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Wordpress Themes Multiple Vulnerabilities
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Joomla Third-Party Modules Multiple Vulnerabilities
Radicale Multiple Vulnerabilities Fixed in 1.1
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Foolscap Local File Inclusion Vulnerability Fixed by 0.7.0
Cisco Unified Communications Manager Multiple Vulnerabilities Fixed by 9.2, 10.5.2 and 11.0.1
Joomla Third-Party Modules Multiple Vulnerabilities
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Wordpress Multiple Themes Vulnerabilities
Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
TYPO3 phpMyAdmin Extension Multiple Vulnerabilities
Aerohive HiveOS Cross-Site Scripting Vulnerability
WordPress Theme My Login Plugin "login_template" Local File Inclusion Vulnerability
Adem "p" Arbitrary File Inclusion Vulnerability
ClipShare "config_file" Arbitrary File Inclusion Vulnerability
Manhali "f" Arbitrary File Disclosure Vulnerability
WebCalendar "pref_THEME" File Inclusion Vulnerability
Mega File Manager File Disclosure and Local File Inclusion Vulnerabilities
WordPress Relocate Upload Plugin "abspath" File Inclusion Vulnerability
mPDF "filename" Local File Inclusion Vulnerability
SourceBans "xajaxargs[]" Two Local File Inclusion Vulnerabilities
osCSS2 "_ID" Local File Inclusion Vulnerability
MODx Cross-Site Scripting and Local File Inclusion Vulnerabilities
WHMCompleteSolution "templatefile" Local File Inclusion Vulnerability
POSH Cross-Site Scripting and File Inclusion Vulnerabilities
WordPress Eventify Plugin "npath" File Inclusion Vulnerability
WordPress XCloner Plugin "config" Local File Inclusion Vulnerability
vtiger CRM Multiple Vulnerabilities
Magtrb MyNews "basepath" File Inclusion Vulnerabilities
TimeLive "FileName" File Disclosure Vulnerability
ea-gBook "inc_ordner" File Inclusion Vulnerability
IdeaCart "page" Local File Inclusion Vulnerability
WordPress Annonces Plugin "abspath" and "mainPluginFile" File Inclusion Vulnerabilities
Joomla! JE Quote Form Component "view" File Inclusion Vulnerability
WordPress Mailing List Plugin "wpabspath" File Inclusion Vulnerability
WordPress WP Easy Stats Plugin "homep" File Inclusion Vulnerability
WordPress TheCartPress Plugin "tcp_class_path" File Inclusion Vulnerability
WordPress Zingiri Web Shop Plugin "wpabspath" File Inclusion Vulnerabilities
WordPress AllWebMenus Plugin "abspath" File Inclusion Vulnerability
iBrowser Cross-Site Scripting and Local File Inclusion Vulnerabilities
WordPress s2Member Plugin "s2member_file_download" File Disclosure Vulnerability
WordPress Mini Mail Dashboard Widget Plugin Remote File Inclusion Vulnerability
Blue Coat Reporter Directory Traversal Vulnerability
Blue Coat Reporter Directory Traversal Vulnerability
PlaySMS SMS Gateway Multiple File Inclusion Vulnerabilities
Cisco Unified Operations Manager SQL Injection and Cross Site Scripting
Debian Security Update Fixes Request Tracker Multiple Vulnerabilities
Majordomo2 "_list_file_get()" Remote Directory Traversal Vulnerability
MediaWiki CSS Injection and Local Script Inclusion Vulnerabilities
LotusCMS "system" Parameter Local File Inclusion Vulnerability
Zwii "set[template][value]" Parameter Local File Inclusion Vulnerability
AxDCMS "aXconf[default_language]" Local File Inclusion Vulnerability
PhpGedView "pgvaction" Parameter Local File Inclusion Vulnerability
Fedora Security Update Fixes MantisBT Information Disclosure Issues
httpdASM Request Handling Remote Directory Traversal Vulnerability
QuickPHP Web Server Remote Directory Traversal Vulnerability
IBM Tivoli Access Manager for e-Business Directory Traversal Vulnerability
Ecava IntegraXor "file_name" Parameter Directory Traversal Vulnerability
TYPO3 Code Execution and Multiple Cross Site Scripting Vulnerabilities
Pulse CMS "p" Parameter Handling Local File Inclusion Vulnerability
Piwik Unspecified Paramater Data Renderer Local File Inclusion
PHP Chat Module for 123 Flash Chat Local File Inclusion Vulnerability
Debian Security Update Fixes mlmmj Directory Traversal Vulnerability
foobla Suggestions "controller" Local File Inclusion Vulnerability
Sandbox SQL Injection and Arbitrary File Upload Vulnerabilities
Samin CMS "pg" Parameter Remote Directory Traversal Vulnerability
SEF404x (com_sef) for Joomla "controller" Local File Inclusion Vulnerability
Sandbox "a" Parameter Handling Local File Inclusion Vulnerability
WorksForWeb iLister listing script "action" Local File Inclusion Vulnerability
Seyret for Joomla "view" Parameter Local File Inclusion Vulnerability
Ultimate PHP Board "admin_restore.php" File Download Vulnerability
Linker IMG "cook_lan" Parameter Local File Inclusion Vulnerability
KubeSupport "lang" Parameter Local File Inclusion Vulnerability
Nakid CMS "core[system_path]" Parameter File Inclusion Vulnerability
EZPX photoblog "tpl_base_dir" Parameter File Inclusion Vulnerability
HigherSites "type" Parameter Local File Inclusion Vulnerability
MyOWNspace File Download and Local File Inclusion Vulnerabilities
Parallels System Automation "locale" Directory Traversal Vulnerability
AWCM CMS "awcm_lang" Parameter Local File Inclusion Vulnerability
Yamamah "download" Parameter Remote File Download Vulnerability
Phreebooks Local File Inclusion and Cross Site Scripting Vulnerabilities
Motorola SURFboard SBV6120E Directory Traversal Vulnerability
WebBiblio "page" Parameter Local File Inclusion Vulnerability
SIMM Management System "page" Local File Inclusion Vulnerability
Visitor Logger "VL_include_path" Local File Inclusion Vulnerability
Groone Contact Form "abspath" Parameter File inclusion Vulnerability
Symphony CMS "mode" Parameter Local File Inclusion Vulnerability
Nucleus Plugin NP_Gallery File inclusion and SQL Injection Vulnerabilities
Nucleus Plugin NP_Twitter "DIR_PLUGINS" File inclusion Vulnerability
TELE DATA Contact Management Server Directory Traversal Issue
Fedora Security Update Fixes html2ps Arbitrary File Disclosure Issue
Cybertek CMS "page" Parameter Local File Inclusion Vulnerability
MS Comment for Joomla "controller" Local File Inclusion Vulnerability
phpGroupWare SQL Injections and Local File Inclusion Vulnerabilities
thEngine "strLanguage" Parameter Local File Inclusion Vulnerability
OpenMairie openAnnuaire Multiple File Inclusion Vulnerabilities
OpenMairie openCatalogue "dsn[phptype]" File Inclusion Vulnerability
Docmint Local File Inclusion and Cross Site Scripting Vulnerabilities
Help Center Live "file" Parameter Local File Inclusion Vulnerability
Ultimate Portfolio for Joomla "controller" Local File Inclusion Vulnerability
Noticeboard for Joomla "controller" Local File Inclusion Vulnerability
SmartSite for Joomla "controller" Local File Inclusion Vulnerability
Graphics Component for Joomla "controller" File Inclusion Vulnerability
OpenMairie Opencourrier Multiple File Inclusion Vulnerabilities
OpenMairie openReglement Multiple File Inclusion Vulnerabilities
OpenMairie openScrutin Remote and Local File Inclusion Vulnerabilities
Archery Scores for Joomla "controller" Local File Inclusion Vulnerability
ZiMB Comment for Joomla "controller" Local File Inclusion Vulnerability
ZiMB Manager for Joomla "controller" Local File Inclusion Vulnerability
Gadget Factory for Joomla "controller" Local File Inclusion Vulnerability
Matamko for Joomla "controller" Local File Inclusion Vulnerability
iNetLanka Multiple Root for Joomla "controller" File Inclusion Vulnerability
iNetLanka Multiple Map for Joomla "controller" File Inclusion Vulnerability
iNetLanka Drawroot for Joomla "controller" File Inclusion Vulnerability
iNetLanka Google for Joomla "controller" Local File Inclusion Vulnerability
iF surfALERT for Joomla "controller" Local File Inclusion Vulnerability
WebAsyst Shop-Script FREE File Inclusion and SQL Injection Issues
AddressBook for Joomla "controller" Local File Inclusion Vulnerability
FlashGames for Joomla "controller" Local File Inclusion Vulnerability
Arcade Games for Joomla "controller" Local File Inclusion Vulnerability
Horoscope Component for Joomla "controller" File Inclusion Vulnerability
Web TV Component for Joomla "controller" File Inclusion Vulnerability
JInventory for Joomla "controller" Parameter File Inclusion Vulnerability
SVMap for Joomla "controller" Parameter File Inclusion Vulnerability
LoginBox Pro for Joomla "view" Local File Inclusion Vulnerability
BCA RSS Syndicator for Joomla "controller" File Inclusion Vulnerability
Magic Updater for Joomla "controller" Local File Inclusion Vulnerability
eFront "langname" Parameter Processing Local File Inclusion Vulnerability
Fw-BofF "configRootDir" and "configDBchoice" File Inclusion Issues
WebMaid CMS Multiple Parameter File Inclusion Vulnerabilities
deV!Lz Clanportal "basePath" Parameter File Inclusion Vulnerability
Geekhelps ADMP SQL Injection and Local File Inclusion Vulnerabilities
AdFreely Ad Board Script "LANG_CODE" Local File Inclusion Issues
vBseo "vbseourl" Parameter Handling Local File Inclusion Vulnerability
LineWeb Remote SQL Injection and Local File Inclusion Vulnerabilities
Fedora Security Update Fixes PhpLDAPadmin Local File Inclusion
eoCMS "BBCODE_path" Remote File Inclusion Vulnerability
Invision Power Board SQL Injection and Local Inclusion Vulnerabilities
Betsy CMS "popup" Parameter Local File Inclusion Vulnerability
Oscailt CMS "obj_id" Parameter Local File Inclusion Vulnerability
Fedora Security Update Fixes Sahana File Disclosure Vulnerability
phpPollScript "include_class" Remote File Inclusion Vulnerability
Aurora CMS "AURORA_MODULES_FOLDER" File Inclusion Vulnerability
phpNagios "conf[lang]" Parameter Local File Inclusion Vulnerability
OBOphiX "chemin_lib" Parameter Remote File Inclusion Vulnerability
Datalife Engine "dle_config_api" Parameter File Inclusion Vulnerability
Ve-EDIT Two Remote and Local File Inclusion Vulnerabilities
Kingcms "CONFIG[AdminPath]" Parameter File Inclusion Vulnerability
Agora for Joomla "action" Parameter Local File Inclusion Vulnerability
DreamCost Multiple File Inclusion and SQL Injection Vulnerabilities
QuarkMail "tf" Parameter Processing Directory Traversal Vulnerability
TotalCalendar SQL Injection and Local File Inclusion Vulnerabilities
Moa Gallery Remote File Inclusion and File Disclosure Vulnerabilities
Vtiger CRM Code Execution and Information Disclosure Vulnerabilities
Gentoo Security Update Fixes DokuWiki Local File Inclusion Vulnerability
Gravy Media Photo Host "file" Parameter File Disclosure Vulnerability
100 last CVE
CVE-2017-5595
CVE-2016-10140
CVE-2015-8748
CVE-2015-8747
CVE-2015-7670
CVE-2015-7669
CVE-2015-7668
CVE-2015-7667
CVE-2015-7666
CVE-2015-7357
CVE-2015-7319
CVE-2015-6238
CVE-2015-5472
CVE-2015-5471
CVE-2015-5469
CVE-2015-5461
CVE-2015-4616
CVE-2015-4614
CVE-2015-4109
CVE-2015-4075
CVE-2015-4074
CVE-2015-4073
CVE-2015-4072
CVE-2015-4071
CVE-2015-4010
CVE-2015-3173
CVE-2014-9218
CVE-2014-8959
CVE-2014-8958
CVE-2012-4867
CVE-2012-1496
CVE-2012-1205
CVE-2011-4810
CVE-2011-4713
CVE-2011-4679
CVE-2011-4670
CVE-2011-3981
CVE-2011-1690
CVE-2011-1689
CVE-2011-1688
CVE-2011-1687
CVE-2011-1686
CVE-2011-1685
CVE-2011-0962
CVE-2011-0960
CVE-2011-0959
CVE-2011-0537
CVE-2011-0518
CVE-2011-0505
CVE-2011-0405
CVE-2011-0063
CVE-2011-0049
CVE-2011-0047
CVE-2010-4883
CVE-2010-4623
CVE-2010-4622
CVE-2010-4598
CVE-2010-4350
CVE-2010-4349
CVE-2010-4348
CVE-2010-4330
CVE-2010-3763
CVE-2010-2920
CVE-2010-2786
CVE-2010-2456
CVE-2010-2358
CVE-2010-2341
CVE-2010-2314
CVE-2010-2313
CVE-2010-2307
CVE-2010-2146
CVE-2010-2143
CVE-2010-2128
CVE-2010-2050
CVE-2010-1999
CVE-2010-1956
CVE-2010-1954
CVE-2010-1953
CVE-2010-1927
CVE-2010-1926
CVE-2010-1921
CVE-2010-1920
CVE-2010-1723
CVE-2010-1718
CVE-2010-1717
CVE-2010-1714
CVE-2010-1659
CVE-2010-1658
CVE-2010-1657
CVE-2010-1653
CVE-2010-1652
CVE-2010-1603
CVE-2010-1602
CVE-2010-1495
CVE-2010-1472
CVE-2010-1471
CVE-2010-1470
CVE-2010-1464
CVE-2010-1463
CVE-2010-1462
Risk level
High