Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | [Full-disclosure] logahead UNU edition 1.0 Remote upload file & code execution |
|---|---|
| Date: | Mon, 25 Dec 2006 22:18:07 +0100 |
-=[--------------------ADVISORY-------------------]=-
logahead UNU edition 1.0
Author: CorryL [corryl80@gmail.com]
-=[-----------------------------------------------]=-
-=[+] Application: logahead UNU edition
-=[+] Version: 1.0
-=[+] Vendor's URL: http://typo.i24.cc/logahead/
-=[+] Platform: Windows\Linux\Unix
-=[+] Bug type: Remote Upload file & Code execution
-=[+] Exploitation: Remote
-=[-]
-=[+] Author: CorryL ~ corryl80[at]gmail[dot]com ~
-=[+] Reference: www.x0n3-h4ck.org
-=[+] Virtual Office: http://www.kasamba.com/CorryL
-=[+] Irc Chan: irc.darksin.net #x0n3-h4ck
-=[+] Special Thanks: Merry Christmas for All, Thanks for all #x0n3-h4ck
member,
un saluto a tutti gli avolesi nel mondo.
..::[ Descriprion ]::..
You might already have heard of logahead - the ajaxified blogging engine using
PHP4 and mySQL database by James from the UK.
The UNU edition is based on the logahead beta 1.0 code published under GNU/GPL
license. While the original version sticks to the basic functions of a blog
(mainly publishing posts and receiving comments), the UNU edition is more
enchanted and offers a number of additional features.
..::[ Bug ]::..
My give searches the form Widgets of this blog is results vulnerability, in fact
a remote attaker is able to upload also a file php, and to perform arbitrary
commands
inside the server victim.
..::[ Proof Of Concept ]::..
http://www.server-victim/extras/plugins/widged/_widged.php?A=U&D=
..::[ Disclousure Timeline ]::..
[25/12/2006] - Public disclousure
**************
Registrati ad Alice Basic e scarica Alice Messenger,
il nuovo instant messenger che ti fa chattare GRATIS con i tuoi amici!
Per maggiori informazioni vai su:
http://adsl.alice.it/servizi/alicebasic.html?pmk=psmail_foot01
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | [Full-disclosure] [SECURITY] [DSA 1241-1] New squirrelmail packages fix cross-site scripting, Moritz Muehlenhoff |
|---|---|
| Next by Date: | [Full-disclosure] xss problems, Deepan |
| Previous by Thread: | [Full-disclosure] [SECURITY] [DSA 1241-1] New squirrelmail packages fix cross-site scripting, Moritz Muehlenhoff |
| Next by Thread: | [Full-disclosure] xss problems, Deepan |
| Indexes: | [Date] [Thread] [Top] [All Lists] |