arfis

automated Remote File Inclusion search

RFI (0.2): SiteSys September 14, 2007

Filed under: RFI — arfis @ 12:25 am

Project Name: SiteSys
Project Link: http://sourceforge.net/projects/sitesys/
Project DL: http://surfnet.dl.sourceforge.net/sourceforge/sitesys/sitesys-1.0a.zip
RFI Info:
File: tmp/sitesys-1.0a/inc/pagehead.inc.php
Line: 39
Vuln Code:

File: tmp/sitesys-1.0a/inc/pageinit.inc.php
Line: 10
Vuln Code: include($doc_root . “/conf/main.cfg.php”); // Includes the config variables in every page.

(found with version 0.2 – 1452 projects processed so far)