Re: # MHG Security Team --- MyBloggie 2.1.1 version Remote File Include Vulnerabilit

2006-06-06 Thread Steven M. Christey
nukedx said: >This is not vulnerable,PHP-Nuke having a special in their files and >when includes mainfile.php it overwrites the global variables and it >caused to make an arbitrary file inclusion. > >But in MyBloggie there is no common vulnerability like it. In the source code for 2.1.1, many fi

Re: # MHG Security Team --- MyBloggie 2.1.1 version Remote File Include Vulnerabilit

2006-06-04 Thread nukedx
This is not vulnerable,PHP-Nuke having a special in their files and when includes mainfile.php it overwrites the global variables and it caused to make an arbitrary file inclusion. But in MyBloggie there is no common vulnerability like it.I checked all files and all versions did not see any vul

# MHG Security Team --- MyBloggie 2.1.1 version Remote File Include Vulnerabilit

2006-06-02 Thread erne ayaz
# Milli-Harekat Advisory ( www.milli-harekat.org ) # MyBloggie <= 2.1.1 version - Remote File Include Vulnerabilities # Risk : meduim # Class: Remote # Script : MyBloggie 2.1.1 version # Msn : erne [at] ernealizm.com # Credits : ERNE # Thanks : Dj_ReMix,Eskobar,Blackened,TR_IP,ßy KorsaN,Os