GHDB

Google Search: inurl:”/becommunity/community/index.php?pageurl=”

xlockex rates this entry 6 out of 10.
Submitted: 2004-09-10 00:00:00
Added by: xlockex
Hits: 5444
Score: 6

E-market is commercial software made by a korean company(http://www.bbs2000.co.kr). A vulnerability in this software was reported to Bugtraq. The exploit is possible with the index.php script:http://[TARGET]/becommunity/community/index.php?pageurl=[injection URL]http://[TARGET]/becommunity/community/index.php?from_market=Y&pageurl=[injection URL] For more information read this:http://echo.or.id/adv/adv06-y3dips-2004.txt Author: y3dipsDate: Sept, 7th 2004Location: Indonesian, Jakarta


Comments:

2004-09-13 19:14:42 (Fr0zen):
hmm this is fun for korean hackers. can i do something else except listing directories ?