Exploit Title: File disclosure via XEE in SharePoint and DotNetNuke Date: September 15, 2011 Author: Nicolas Gregoire Version: SharePoint 2007 / 2010, DotNetNuke < 6 CVE : CVE-2011-1892 poc filename: xee.xml ]> &boom; poc filename: xee.xsl