webspace: Strato Premium XE
PhP Version: 5
Mysql Version 5
sub Domain bisher
registerglobal on
Zugriff via FF
index.php
Code:
<?
$_GET['content'] = str_replace('.','',$_GET['content']);
$check = explode("../",$_GET['content']);
if (isset($check[1]) && $check[1]!='') {
echo 'Zugriff verweigert!';
exit;
}
@include_once('lib/header.php');
@include_once('content'.$_GET['content'].'.php');
@include_once('lib/footer.php');
?>
lib/footer.php
Code:
</td>
<td width="5" valign="top" align="left"></td>
<td width="150" valign="top" align="left"><?@include_once('lib/menue_rechts.php');?></td>
</tr>
</table>
<!-- Fussnote -->
</td></tr></table>
</body>
</html>
<?db_close();?>
lib/header.php
Code:
<?
@require_once ('lib/functions.lib.php');
db_connect();
@require_once ('lib/session.lib.php');
@require_once ('lib/layout.lib.php');
// SecVMS change begin
if (!isset($_GET['content']) || empty ($_GET['content'])) $_GET['content'] = '/intern/startseite';
// SecVMS change end
if (!file_exists('content'.$_GET['content'].'.php')) $_GET['content'] = '/error/keine_seite';
// Reloads löschen!
db_query ("DELETE FROM ".$db_prefix."_reloads WHERE bis <= '".time()."'");
// Surfuser lesen
?>
<html>
<head>
<title><?=$seitenname;?></title>
<link rel="stylesheet" href="css/main.css" type="text/css">
<meta name="Author" content="mc-bar.de">
<meta name="Publisher" content="mc-bar.de">
<meta name="Copyright" content="mc-bar.de">
<meta name="Keywords" content="lose,klamm,klammlose,bank,klammino,zinsen,flash,games,spiele,klick4lose">
<meta name="Description" content="Verdien was Du willst">
<meta name="Page-topic" content="Loseseite zu Klamm.de">
<meta name="Audience" content="">
<meta name="Content-language" content="DE">
<meta name="Page-type" content="Nicht Gewinnorientiert">
<meta name="Robots" content="INDEX,FOLLOW">
<link rel="stylesheet" href="/css/main.css" type="text/css">
<?
if ($_GET['content'] == '/intern/startseite') @require_once ('lib/texte/alt_startseitenpopup.txt');
if ($_GET['content'] == '/betteln') @require_once ('lib/texte/alt_bettelseitenpopup.txt');
?>
</head>
<body topmargin="5" leftmargin="0">
<table width="800" cellpadding="0" cellspacing="0" border="0" align="center"><tr><td valign="top" align="center">
<table style="border:solid 1px black" width="800" border="0" cellpadding="0" cellspacing="1" bgcolor="#FEFBF5">
<tr>
<td height="120" width="100%" valign="top" background="/images/header.jpg">
<div style="position:relative; top:14px; right:-315px;">
<?@require_once ('lib/texte/alt_headerbanner.txt');?>
</div>
</td></tr>
<tr>
<td style="border:solid 1px black" bgcolor="#FEFBF5" valign="top" align="center">
<table width="100%">
<tr>
<td height="100%" width="100%" align="left">
<a href="index.php">Home</a>
<a href="?content=/intern/mediadaten">Mediadaten</a>
<a href="?content=/intern/agbs">AGB</a>
<a href="?content=/intern/faqs">FAQ</a>
<a href="?content=/intern/werbemittel">Werbemittel</a>
<a href="?content=/intern/impressum">Impressum</a>
</td>
</tr>
</table>
</td>
</tr>
</table>
<table width="800" border="0" cellpadding="0" cellspacing="0">
<tr><td height="5"></td></tr></table>
<!-- Inhalt -->
<table width="800" cellpadding="0" cellspacing="0" border="0">
<tr>
<td width="150" valign="top" align="left"><?@include_once('lib/menue_links.php');?></td>
<td width="5" valign="top" align="left"></td>
<td width="490" valign="top" align="left">