[Clipart] Full path disclosure

Open Clip Art Library Feedback Form noreply at openclipart.org
Wed Jan 31 23:04:39 PST 2007


Name: Raphael HUCK
E-mail: raphael.huck at free.fr


I've found a full path disclosure in MediaWiki, and Open Clip Art is
vulnerable:

http://openclipart.org/wiki/skins/Simple.deps.php

I advise to check revision 19681 and patch :

http://svn.wikimedia.org/viewvc/mediawiki?view=rev&revision=19681




More information about the clipart mailing list