[VIM] Small Axe 0.3.1 (linkbar.php cfile) Remote File Inclusion Vulnerability

str0ke str0ke at milw0rm.com
Fri Jan 18 16:54:41 UTC 2008


We help each other out :)

/str0ke

George A. Theall wrote:
> On Jan 18, 2008, at 11:41 AM, str0ke wrote:
>
>> There isn't an inc directory in the inc directory.
>>
>> linkbar.php
>> ########
>> include_once("inc/config.in.php"); << no file found
>> include_once("inc/coreFX.inc.php"); << no file found
>> include_once($cfile);
>>
>> Looks good to me.
>
> Oh, you're right as usual, str0ke.
>
> George


More information about the VIM mailing list