arfis

automated Remote File Inclusion search

RFI (0.2): awrate.com message board September 13, 2007

Filed under: RFI — arfis @ 11:53 pm

Project Name: awrate.com message board
Project Link: http://sourceforge.net/projects/awrate/
Project DL: http://surfnet.dl.sourceforge.net/sourceforge/awrate/awrate-1.0.zip
RFI Info:
File: tmp/awrate-1.0/awrate.com/404.php
Line: 3
Vuln Code: include_once($toroot.”login.php.inc”);

File: tmp/awrate-1.0/awrate.com/topbar.php
Line: 2
Vuln Code: include_once($toroot.”login.php.inc”);

(found with version 0.2 – 1219 projects processed so far)