|
|||||||||||
|
Re: Gstebuch Version 1.5 Remote Command Execution Vulnerability
From: Carsten Eilers <ceilers-lists(at)gmx.de>
Date: Fri Aug 10 2007 - 16:10:26 EDT
>echo "<meta http-equiv='refresh' content='0;URL=install.php'>"; Nice try, but you should read the lines above the redirection, too: | "; | exit; | } Your redirection is in line 6, the RFI in line 3. First hit wins: RFI. ;-)
Regards,
This archive was generated by hypermail 2.1.8 : Sun Oct 28 2007 - 06:11:26 EDT |
||||||||||
|
|||||||||||