arfis

automated Remote File Inclusion search

RFI (0.2): PHP Project Management September 14, 2007

Filed under: RFI — arfis @ 3:16 am

Project Name: PHP Project Management
Project Link: http://sourceforge.net/projects/php-pm/
Project DL: http://surfnet.dl.sourceforge.net/sourceforge/php-pm/release-0.8.tar.gz
RFI Info:
File: tmp/release-0.8.ta/release-0.8/ajax/loadsplash.php
Line: 2
Vuln Code: include ($full_path.”/ajax/lang/”.$def_lang.”/loadsplash.php”);

File: tmp/release-0.8.ta/release-0.8/modules/contacts/index.php
Line: 9
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/service/index.php
Line: 4
Vuln Code: include ($full_path.”/modules/projects/lang/”.$def_lang.”/labels.php”);

File: tmp/release-0.8.ta/release-0.8/modules/log/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/messages/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/reports/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/reports/new.php
Line: 44
Vuln Code: include ($full_path.”/modules/”.$module.”/reports/rep_”.$rep_id.”.php”);

File: tmp/release-0.8.ta/release-0.8/modules/snf/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/files/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/projects/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/projects/list.php
Line: 2
Vuln Code: include ($full_path.”/modules/”.$module.”/details.php”);

File: tmp/release-0.8.ta/release-0.8/modules/projects/summary.inc.php
Line: 4
Vuln Code: include ($full_path.”/modules/”.$m_path.”/lang/”.$def_lang.”/summary.php”);

File: tmp/release-0.8.ta/release-0.8/modules/info/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/phones/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/history/index.php
Line: 2
Vuln Code: include ($full_path.”/modules/”.$module.”/”.$def_lang.”/history.php”);

File: tmp/release-0.8.ta/release-0.8/modules/syslog/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/groupadm/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/mail/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/tasks/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/tasks/searchsimilar.php
Line: 2
Vuln Code: include ($full_path.”/modules/tasks/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/tasks/details.php
Line: 197
Vuln Code: include ($full_path.”/modules/files/list.php”);

File: tmp/release-0.8.ta/release-0.8/modules/tasks/list.php
Line: 249
Vuln Code: if ( $subop == “detail” ) include ($full_path.”/modules/”.$module.”/details.php”);

File: tmp/release-0.8.ta/release-0.8/modules/tasks/summary.inc.php
Line: 4
Vuln Code: include ($full_path.”/modules/”.$m_path.”/lang/”.$def_lang.”/summary.php”);

File: tmp/release-0.8.ta/release-0.8/modules/search/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/emails/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/useradm/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/fax/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/presence/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/presence/view.php
Line: 159
Vuln Code: include ($full_path.”/modules/”.$module.”/details.php”);

File: tmp/release-0.8.ta/release-0.8/modules/organizations/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/organizations/list.php
Line: 11
Vuln Code: include ($full_path.”/modules/”.$module.”/details.php”);

File: tmp/release-0.8.ta/release-0.8/modules/events/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/modules/certinfo/index.php
Line: 3
Vuln Code: include ($full_path.”/modules/”.$module.”/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/include/loginform.php
Line: 9
Vuln Code: include ($full_path.”/lang/”.$def_lang.”/loginform.php”);

File: tmp/release-0.8.ta/release-0.8/modules/files/list.php
Line: 2
Vuln Code: require ($full_path.”/modules/files/lang/”.$def_lang.”/general.php”);

File: tmp/release-0.8.ta/release-0.8/blocks/help.php
Line: 2
Vuln Code: require ($full_path.”/blocks/lang/”.$def_lang.”/help.php”);

File: tmp/release-0.8.ta/release-0.8/blocks/birthday.php
Line: 2
Vuln Code: require ($full_path.”/blocks/lang/”.$def_lang.”/birthday.php”);

File: tmp/release-0.8.ta/release-0.8/blocks/events.php
Line: 2
Vuln Code: require ($full_path.”/blocks/lang/”.$def_lang.”/events.php”);

(found with version 0.2 – 2658 projects processed so far)