[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Hot Links download backup authorized vulnerabilities
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: Hot Links download backup authorized vulnerabilities
- From: hack2prison@xxxxxxxxx
- Date: 15 Nov 2006 05:26:06 -0000
Hot Links is web directory system provided by mrcgiguy.com contain PHP+MySQL
version and Perl version and PHP withou MySQL. All version are vulnerabilities
If admin backup database will store on server and attacker can download without
authorized:
http://[domain.ext]/[path]/dlback.php?dl=fullback
Contact vendor but no reply.