|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 47
Members: 0
Total: 47
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
PLZ!!!! HELP!!! |
|
Posted: Thu Jan 14, 2010 6:17 am |
|
|
hackwackiechack |
Beginner |
|
|
Joined: Jan 14, 2010 |
Posts: 1 |
|
|
|
|
|
|
|
iam trying to hack this ipb forum it is wide open for the IPB <= 2.3.5 sql injection exploit ive checked with Code: | act=xmlout&do=check-display-name&name=whatever98321%2527+OR+1=1/* and act=xmlout&do=check-display-name&name=whatever98321%2527+OR+1=1%23 | and get the i get IPS Driver Error which means its open but when i run the exploit i still get the Quote: | Testing target URL ...
Invalid response, target URL not valid? Exiting ... | error is it patched if so is there any other wAy to hack this foum. |
|
|
|
|
|
|
|
|
Posted: Sat Jan 16, 2010 2:21 pm |
|
|
waraxe |
Site admin |
|
|
Joined: May 11, 2004 |
Posts: 2407 |
Location: Estonia, Tartu |
|
|
|
|
|
|
Some targets are causing problems to specific exploit, I know. You need good sql injection exploitation and scripting skills in order to do customize/modify exploit for that target.
Start with basics - test various sql injection methods and tricks and find out what's working.
One more suggestion - IPB will usually write sql errors to the log file, which is located in "cache" directory and may be accessible over web. Try to view that log file, it may reveal sql error details. |
|
|
|
|
www.waraxe.us Forum Index -> Invision Power Board
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|