Exploit Ajaxmint Gallery 1.0 - Local File Inclusion

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
37310
Проверка EDB
  1. Пройдено
Автор
AKASTEP
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
null
Дата публикации
2012-05-23
Ajaxmint Gallery 1.0 - Local File Inclusion
Код:
source: https://www.securityfocus.com/bid/53659/info

Ajaxmint Gallery is prone to a local file-include vulnerability because it fails to sufficiently sanitize user-supplied input.

An attacker can exploit this vulnerability to view files and to execute local scripts in the context of the webserver process. This may aid in further attacks.

Ajaxmint Gallery 1.0 is vulnerable; other versions may also be affected. 

http://www.example.com/learn/ajaxmint/ajaxmint-gallery/admin/index.php?c=..\..\..\..\ajaxmint-gallery/pictures/5_me.jpg%00 [aka shell]
 
Источник
www.exploit-db.com

Похожие темы