[prev in list] [next in list] [prev in thread] [next in thread]
List: bugtraq
Subject: Re: gnopaste <= 0.5.3 (index.php) Remote File Include Vulnerability
From: Francesco Laurita <francesco () francesco-laurita ! info>
Date: 2007-01-29 22:48:10
Message-ID: 45BE79AA.4050006 () francesco-laurita ! info
[Download RAW message or body]
trzindan@hotmail.fr ha scritto:
> index.php
>
> include(GNP_REAL_PATH . 'includes/common.php');
>
>
Bogus!
First: GNP_REAL_PATH is a constant which means it has an unchangeable
value (RTM)
Second: GNP_REAL_PATH is setted on line #39 (Open your eyes)
Regards
--
Francesco Laurita
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic