lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20070610060827.4691.qmail@securityfocus.com> Date: 10 Jun 2007 06:08:27 -0000 From: the.tiger100@...il.com To: bugtraq@...urityfocus.com Subject: Re: myBloggie 2.1.5 Remote File Include wassssss up with these ppl man this is ain't rfi at all includes/db.php --> if ( !defined('IN_MYBLOGGIE') ) { die("You are not authorized to access this file"); } so how rfi ? its defined so its not rfi includes/template.php --->just class i cant find any inclusion or even one include includes/classes -->no file with this name includes/funcion.php?-->nothing at all no inlcludes at all viewmode.php?--->defined baaaaad exploit its not working at all