exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

postnukePath.txt

postnukePath.txt
Posted Sep 21, 2004
Site mantralab.org

Postnuke 0.750 Phoenix is susceptible to multiple full path disclosure flaws.

tags | advisory
SHA-256 | 5de940cb2eb4befc2477653c74b806a79648a9acdc55290c066c338d344ba3f0

postnukePath.txt

Change Mirror Download


#####################################################################
# [CODEBUG Labs] #
# Advisory #6 #
# Title: Multiple Full Disclosure Path in postnuke 0.750 phoenix #
# Author: FAiN182 - fain182@infinito.it #
# Product: Postnuke 0.750 Phoenix #
# Type: Full disclosure path #
# Web: http://www.mantralab.org
# Personal Site: http://fain182.altervista.org #
#####################################################################

---[ the product

Postnuke is a CMS (Contenent Management System) that is an improved
version of php-nuke. You can find it here: http://www.phpnuke.com.

---[ the bug

The pages of the full disclosure path vulnerabilities that are in
the core and in the modules of postnuke are wrote to be included
in other pages, but if you access directly they made a page error
mainly for Unkwon function.


---[ the exploit:

In the core of postnuke you can get an error page visiting this url:

http://www.site_with_postnuke.com/footer.php

In the other modules that are by default in postnuke:

http://www.site_with_postnuke.com/modules/Downloads/admin.php
http://www.site_with_postnuke.com/modules/FAQ/admin.php
http://www.site_with_postnuke.com/modules/Reviews/admin.php
http://www.site_with_postnuke.com/modules/Sections/admin.php
http://www.site_with_postnuke.com/modules/Submit_News/admin.php
http://www.site_with_postnuke.com/modules/Top_List/admin.php
http://www.site_with_postnuke.com/modules/Web_Links/admin.php

---[ the patch

You can protect the page form the direct access as is in the file
header.php, writing this lines at the begin of all the page bugged
in that way:

if (strpos('header.php', $_SERVER['PHP_SELF'])) {
die ("You can't access this file directly...");
}

---[ Greetings

To Mantra, Anat3ma and all CODEBUG project team

---[ EOF ]-----------------------------------------------------------
Login or Register to add favorites

File Archive:

May 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    44 Files
  • 2
    May 2nd
    5 Files
  • 3
    May 3rd
    11 Files
  • 4
    May 4th
    0 Files
  • 5
    May 5th
    0 Files
  • 6
    May 6th
    28 Files
  • 7
    May 7th
    3 Files
  • 8
    May 8th
    4 Files
  • 9
    May 9th
    54 Files
  • 10
    May 10th
    12 Files
  • 11
    May 11th
    0 Files
  • 12
    May 12th
    0 Files
  • 13
    May 13th
    17 Files
  • 14
    May 14th
    11 Files
  • 15
    May 15th
    0 Files
  • 16
    May 16th
    0 Files
  • 17
    May 17th
    0 Files
  • 18
    May 18th
    0 Files
  • 19
    May 19th
    0 Files
  • 20
    May 20th
    0 Files
  • 21
    May 21st
    0 Files
  • 22
    May 22nd
    0 Files
  • 23
    May 23rd
    0 Files
  • 24
    May 24th
    0 Files
  • 25
    May 25th
    0 Files
  • 26
    May 26th
    0 Files
  • 27
    May 27th
    0 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close