|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 67
Members: 0
Total: 67
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
|
I took all of it down, it's gone.
I never got mysql_query to work, but the theoritically it should have, I never gave it much testing. |
|
|
|
|
And just to think phpBB devs reported me to my ISP for trying to help them with this.
assholes. |
|
|
|
|
no, it'll work on most os's
It'll just limit it to what OS it is.. i.e: unix is ls, and windows is dir.
It isn't very useful because you are logged in as no user, so you don't have write permiss ... |
|
|
|
|
Just a note, look how they edit their post now that there's a proof of concept, this one of the most dangerous phpbb exploits ever.
Proof of Concept:
http://www.howdark.com/phpbb2010.phps |
|
|
|
|
-----------------------------------------------------------------------------------------------------
// Updates
------------------------------------------------------------------------------------- ... |
|
|
Page 1 of 1 |
All times are GMT |
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|