about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Limbo CMS Frontpage Arbitrary PHP Command Execution Vulnerability


Title Limbo CMS Frontpage Arbitrary PHP Command Execution Vulnerability
Published 2006-03-01-12:00AM
Updated 2006-03-05-10:06PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Alexander Hristov is credited with the discovery of this vulnerability.
Vulnerable  Limbo CMS Limbo CMS 1.0.4 .2
Limbo CMS Limbo CMS 1.0.4 .1
Not Vulnerable  
Code   This issue can be exploited through use of a web client.

The following proof of concept URI is available:
http://www.example.com/path-to-limbo/index.php?option=frontpage&Itemid=system()
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 23:01:06 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Yes SMF 1.1.2 sex bad bo Yes Oracle Ora /component mxbb newsr Silva sain www.blackc Sexporno mxbb newsr PHOTO SEXX Www.Video. sexibebi Apache htt 159310.qi dlink 500G sexypussy Powered by WUFTPD /component wimax www.kx68.c freefhqiig Www.Sexwal Sex blogs www..tante www.bellad maxcpm.inf www.eyao12 sex video www.joni.c FORM DS 23 c.71.56.14 sexy stori wind mills Www.Sexyas candy shop loving hor PHP-Nuke 8 shop tree Fee ISC Bind u ftvangles f.tv.com News Searc CMS is Fre www.xvidoi news for c Www world