TUCoPS :: HP Unsorted C :: b06-5295.htm

Comdev One Admin 4.1 Remote File Inclusion
Comdev One Admin 4.1 Remote File Inclusion
Comdev One Admin 4.1 Remote File Inclusion



/****************************************/

http://www.w4cking.com 

CREDIT:
w4ck1ng.com

PRODUCT:
Comdev One Admin 4.1
http://www.comdevweb.com/oneadmin.php 

VULNERABILITY:
Remote File Inclusion

NOTES:
- requires register globals on
- requires magic quotes off

POC:
//oneadmin/adminfoot.php?path[docroot]=

ADVISORY & EXPLOIT (requires registration):
http://w4ck1ng.com/board/showthread.php?t=1491 

/****************************************/

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH