Nytro Posted March 25, 2011 Report Posted March 25, 2011 PHP LFI to Arbitrary Code Execution via rfc1867 File Upload Temporary Filesby Gynvael Coldwind18 March 2011PrologueThis article describes a method of taking advantage of a .php script Local FileInclusion vulnerability. It does not describe any vulnerability in the PHP engineitself, nor does it describe any new vulnerability class.Download:http://www.exploit-db.com/download_pdf/17010L-am citit, e scurt dar prezinta o idee interesanta. Vi-l recomand. Quote