Jump to content
YOUR-AD-HERE
HOSTING
TOOLS
992Proxy

Locked Network Shutdown Module 3.21 Remote PHP Code Injection


1337day-Exploits

Recommended Posts

PacketStorm-Security Acaba de publicar lo siguiente:

 

This is the hidden content, please
;)

 

This Metasploit module exploits a vulnerability in lib/dbtools.inc which uses unsanitized user input inside a eval() call. Additionally the base64 encoded user credentials are extracted from the database of the application. Please note that in order to be able to steal credentials, the vulnerable service must have at least one USV module (an entry in the "nodes" table in mgedb.db).

 

 

29/11/2012 06:43

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.