lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <45466BAA.5030004@francesco-laurita.info> Date: Mon, 30 Oct 2006 22:16:26 +0100 From: Francesco Laurita <francesco@...ncesco-laurita.info> To: firewall1954@...mail.com Cc: bugtraq@...urityfocus.com Subject: Re: Nucleus Core v3.23 - Remote File Include firewall1954@...mail.com ha scritto: > ####################### Firewall ######################### > Nucleus Core v3.23 - Remote File Include by Firewall > Latin American Defacers > BuG FounD by Firewall > > # Application Affect: > Nucleus Core v3.23 > > # Sorce Code: > http://prdownloads.sourceforge.net/nucleuscms/nucleus3.23.zip?download > > # Code: > include($DIR_LIBS . 'MEDIA.php'); > Bogus! $DIR_LIBS is setted in config.php that is included one line above