[23660] in bugtraq
audiogalaxy...little problem....
daemon@ATHENA.MIT.EDU (josx)
Mon Dec 31 13:57:18 2001
Message-ID: <3C31264E.75324252@velocom.com.ar>
Date: Tue, 01 Jan 2002 00:00:30 -0300
From: josx <jdibiase@velocom.com.ar>
MIME-Version: 1.0
To: bugtraq@securityfocus.com
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
I am Josx From buenos aires, argentina....
I want to report a bug an audiogalaxy.com.
AudioGalaxy is using php script that read url submitted and then
separate different things like address,script,port whatever. They dont
code very well, that why we can see source code of php files.
We can only see source of one per directory ( i think the default one)
For check this try:
http://www.audiogalaxy.com/./
this show us source code of home page....
http://www.audiogalaxy.com/./list/
this show us source of default file in list directory
we can do this for all the directories in their application....