|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 89
Members: 0
Total: 89
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
wokky |
|
Replies: 2 |
Views: 12318 |
|
|
|
|
|
|
thx dude, i dont know why i didnt think of that, so simple ... |
|
|
|
wokky |
|
Replies: 2 |
Views: 12318 |
|
|
|
|
|
|
Hi everyone,
I have found a XSS issue on a website via a search engine, I can easily inject script tag wich is executed, meaning i can get cookies.
So all i have to do is to get my victim visiti ... |
|
|
|
wokky |
|
Replies: 9 |
Views: 16205 |
|
|
|
|
|
|
ok, can you give me some exemples cause i don't know how to process |
|
|
|
wokky |
|
Replies: 9 |
Views: 16205 |
|
|
|
|
|
|
Well, suPHP test if the php file is execute by the right user.
in this case i wrote a file with mysql user so it cannot be executable by php
Look:
I tried a simple php without file/dir access f ... |
|
|
|
wokky |
|
Replies: 9 |
Views: 16205 |
|
|
|
|
|
|
PHP Version 5.2.5-pl1-gentoo |
|
|
|
wokky |
|
Replies: 9 |
Views: 16205 |
|
|
|
|
|
|
ok i dit it i found a directory to write but i got an another problem,
suPHP, safe mode ! impossible to execute the file, probably nothing to do about it |
|
|
|
wokky |
|
Replies: 9 |
Views: 16205 |
|
|
|
|
|
|
ye i tried to read some files successefully and i know where are directories writable by php but it doesn't works with mysql dunno why |
|
|
|
wokky |
|
Replies: 3 |
Views: 6265 |
|
|
|
|
|
|
|
|
|
wokky |
|
Replies: 9 |
Views: 16205 |
|
|
|
|
|
|
Hello all,
I found mysql root account, I can login via phpmyadmin and do eveything i want but now i want to take advantage of this and install a phpbackdoor.
So i tried something like this:
s ... |
|
|
|
wokky |
|
Replies: 3 |
Views: 6265 |
|
|
|
|
|
|
hmm, probably too hard for you as for me |
|
|
|
wokky |
|
Replies: 3 |
Views: 6265 |
|
|
|
|
|
|
Hello,
I found this SHA1 hash password a few days ago:
3de01aa963df7285788cae8dbeb466001475d280
i tried brute force technics without succes with these options
-decimal
-characters(caps, ... |
|
|
Page 1 of 1 |
All times are GMT |
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|