导航

Web安全手册

分享本身就是件快乐的事 我因别人得到帮助而感到幸福

[置顶] 悲剧啊

[置顶] 技术过关游戏

[置顶] 免责声明 & 文章投递

Sablog-X v2.x 任意变量覆盖漏洞

Sablog-X v2.x 任意变量覆盖漏洞

author: 80vul-B
team:http://www.80vul.com
 

睛天电影系统注入漏洞

Author: My5t3ry
Official site: http://www.qingtiandy.cn/
vulnerable: /look/template/wmv.asp

Discuz! & Phpwind Vulnerabilities

Vulnerable:
    Discuz! 7.1
    Discuz! 7.2
    Phpwind 7.5

MvMmall漏洞分析

只要我们控制了 $sid 和$sess_data的话。那么SHELL就能写进去了。

Invision Power Board <= 3.0.4 Local PHP File Inclusion and SQL Injection

I. VULNERABILITY
-------------------------
Invision Power Board <= 3.0.4 Local PHP File Inclusion and SQL Injection
Invision Power Board <= 2.3.6 SQL Injection

Remote Command Execution in dotDefender Site Management

#Trace: 谁能突破这个waf还望指点一下。
A remote command execution vulnerability exists in the dotDefender(3.8-5) Site Management.

WordPress <= 2.8.5 Unrestricted File Upload Arbitrary PHP Code Execution

#Trace: 授权用户的拿webshell的方法.受影响版本<=2.8.5,受服务器环境影响.

Invision Power Board Blind SQL Injection Vulnerability

Invision Power Services IP.Board is a widely used forum available for download or as part of a fully managed hosted community package. IP.Board version 3.0.2 has been found to contain vulnerabilities in its search engine and lost password recovery engine that allows remote attackers to utilize Blind SQL injection. Thus a remote unauthenticated attacker is able to manipulate the database and fetch sensitive information, for example; admin credentials.

Discuz账号发放插件注入0day

Discuz账号发放插件注入0day

WordPress <= 2.8.3 Remote admin reset password

#Trace: 用来恶作剧倒是很不错。

风讯 4.0 SP7 getshell 0day

发现者:bloodsword、bink,转载请无视
影响版本:<=4.0 sp7,前面的版本没去看,估计也能日。
利用条件,开启了文件上传功能,iis6环境。
...

Sun One WebServer 6.1 JSP Source Viewing vulnerability

#Trace: JSP源代码泄露0day

pmaPWN! - phpMyAdmin Code Injection RCE Scanner & Exploit

phpMyAdmin Code Injection RCE Scanner & Exploit
 

QQmail Multiple Xss Vulnerabilities

2009.4.17-18发现漏洞
2009.4.18 通知腾讯安全中心
2009.5.x 修补以上漏洞

phpMyAdmin Remote Code Execution Proof of Concept

All the documentation you need is in the script comments. I recommend you to go through it, before you actually run the script.

After reading the public advisory and patched code, and playing around for a while, I managed to have a working PoC bash script. The script will allow you to remotely run shell commands and PHP code against vulnerable targets. Although in principle the vulnerability sounds quite simple, it actually took me a while to go from advisory to working attack code.

I’m providing the script with the hope that it will help pentesters and security researchers. Please only test the script against your own systems, or systems you have been given permission to pentest! Don’t be evil, it’s not worth it.

分页:«1234567»

Powered By Z-Blog .Theme from Google黑板报 By Washun

Copyright 2008-2009 Pcsec.org. Some Rights Reserved.苏ICP备08110306号