Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: Wordpress <=2.0.2 'cache' shell injection May 26 2006 04:38AM
pokley (saleh scan-associates net)
while doing some work using php, i found something interesting which
possibbly can be use to exploit this kind of bug. Instead of injecting
carriage return chr(0x13) you can also inject php terminate code( ?> ) to
stop one line comment (// or #) in php (tested on 5.1.4 on windows).

ex:

<?
//...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus