|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 77
Members: 0
Total: 77
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
what i can do with www.site.com/include.php?url=/etc/passwd |
|
Posted: Sat Feb 19, 2005 2:04 pm |
|
|
mrPink |
Beginner |
|
|
Joined: Feb 19, 2005 |
Posts: 4 |
|
|
|
|
|
|
|
hi all
i have discovered a site that have script for include files, i try:
www.site.com/include.php?url=/etc/passwd and show me a long desc about all site in the server, what i can do?
on this site running php-nuke, can i try something for show includes.php ?
tx and sorry for bad inglish
m? |
|
|
|
|
Posted: Sat Feb 19, 2005 11:34 pm |
|
|
cXIb8O3 |
Active user |
|
|
Joined: Feb 17, 2005 |
Posts: 26 |
Location: Poland<>Luxembourg |
|
|
|
|
|
|
File Disclosure Vulnerability or XSS |
|
|
|
|
Posted: Sun Feb 20, 2005 1:19 pm |
|
|
mrPink |
Beginner |
|
|
Joined: Feb 19, 2005 |
Posts: 4 |
|
|
|
|
|
|
|
thank u cXIb8O3, i can print out config.php ? |
|
|
|
|
Posted: Wed May 11, 2005 10:25 am |
|
|
V00d00 |
Beginner |
|
|
Joined: May 05, 2005 |
Posts: 2 |
|
|
|
|
|
|
|
mrPink wrote: | thank u cXIb8O3, i can print out config.php ? |
possible :] ? |
|
|
|
|
Posted: Wed May 11, 2005 5:59 pm |
|
|
shai-tan |
Valuable expert |
|
|
Joined: Feb 22, 2005 |
Posts: 477 |
|
|
|
|
|
|
|
It all depends what versions they are using. Find the version number then find the xss to match that version. There are many advisory's here to use. |
|
_________________ Shai-tan
?In short: just say NO TO DRUGS, and maybe you won?t end up like the Hurd people.? -- Linus Torvalds |
|
|
|
www.waraxe.us Forum Index -> Newbies corner
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|