arfis

automated Remote File Inclusion search

RFI (0.2): Chupix CMS September 14, 2007

Filed under: RFI — arfis @ 12:34 am

Project Name: Chupix CMS
Project Link: http://sourceforge.net/projects/chupix/
Project DL: http://surfnet.dl.sourceforge.net/sourceforge/chupix/chupix_0.2.3.tar.gz
RFI Info:
File: tmp/chupix_0.2.3.ta/chupix/admin/include/header.php
Line: 23
Vuln Code: include($repertoire .’db/config/config.php’); // lecture de la configuration souhaitée par l’utilisateur

(found with version 0.2 – 1518 projects processed so far)