DGT info
Grinderz Blog RSS
SEARCH
CALENDAR
«    October 2007    »
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
 
DONATiON
ACCOUNT
ARCHIVE
NewZLetteR

Enter your email address:

Delivered by FeedBurner

MiRRORz
FRIENDZ
Grinderz.org » Newz » NuSEO.PHP have vulnerability
14.10.2007 NuSEO.PHP have vulnerability
For more information look at this page: http://milw0rm.com/exploits/4512

Who knows how to fix it, please post in comments.

Thanks lordsyntax for report abt. it.

BM [CATEGORY: Newz | VIEWS: 189 | COMMENTS: 1] PRINT
AUTHOR: Spirit


¹1
AUTHOR: Hrki
10 December 2007 13:29
Group: Guests | Registered: -- | News: 0 | Comments: 0 | ICQ: --
Just make sure 'nuseo_dir' is registered so that when they try to put it in the get spot it won't work.

In the code you should see something like

$nuseo_dir = $_GET

it may look a little difrent depending whats in the $_GET['']

remove it and, and "$nuseo_dir = "pathToDir";"

where pathToDir is the actual path.


Add comments
YOUR NAME: YOUR E-MAIL:

SECURITY CODE: Include security image CAPCHA.
update code
ENTER CODE:

Project since 2003 - 2008
Designed by DGT Friend