Re: Cpanel 11.x Local File Inclusion Cross Site Scripting - Discovered By Khashayar Fereidani

2008-11-20 Thread Jan van Niekerk
On Friday 31 October 2008 15:03:55 [EMAIL PROTECTED] wrote: Script : Cpanel 11.x Type : Local File Inclusion Cross Site Scripting Risk : High Discovered by

Re: Re: Cpanel 11.x Local File Inclusion Cross Site Scripting - Discovered By Khashayar Fereidani

2008-11-20 Thread irancrash
Hi , Attacker can bypass disable_functions mod_security safe_mode ... with this vulnerability . I think this is good reason ! http://fereidani.ir - Khashayar Fereidani

Re: Cpanel 11.x Local File Inclusion Cross Site Scripting - Discovered By Khashayar Fereidani

2008-11-20 Thread dkoston
You should update the title of your submission. This is a Fantastico vulnerability (http://www.netenberg.com/fantastico.php). The paths that you are attacking are not part of cPanel.