| Author | Post | |||
|
theblacksheep |
The "plaNetStat" script gives an admin information about how many user have visited the website, which browser they have used and all that kind of stuff. It is also possible to download the log files to have a look at them locally. The creators of the script suggest that everyone protects the admin folder with .htaccess. Nevertheless not everyone does! Therefore everyone can download arbitrary files: ...planetstat/admin/logfiles.php?download=[PATH] This often helps to get a foothold for further activities. Maybe even other things are possible but I had no time to do further research so far. tbs |
|||
|
|
|