OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
PHPLiveHelper 1.8 remote command execution (include) Xploit (perl)

stormhackerhotmail.com
Date: Mon Mar 27 2006 - 16:20:51 CST


[W]orld [D]efacers Team
======================================
--------------------Summary----------------
eVuln ID: WD00
Vendor: phplivehelper
Vendor's Web Site: www.phplivehelper.com
Software: Live Customer Support Solution
Sowtware's Web Site:
http://www.turnkeywebtools.com/index.php/location/products/product/phplivehelper/
Versions: 1.8
Class: Remote
PoC/Exploit: Available
Solution: Not Available
Discovered by: rUnViRuS (worlddefacers.de)
-----------------Description---------------
abs_path File Include Vulnerability

--------------PoC/Exploit----------------------
http://www.worlddefacers.de/Public/WD-TMPLH.txt
--------------Solution---------------------
No Patch available.

--------------Credit-----------------------
Discovered by: rUnViRuS (worlddefacers.de)

-------------------------------------------