Smf 1.1 Rc3

Discussion in 'Песочница' started by КИНГ, 3 Aug 2008.

Thread Status:
Not open for further replies.
  1. КИНГ

    КИНГ Elder - Старейшина

    Joined:
    13 Jun 2006
    Messages:
    129
    Likes Received:
    25
    Reputations:
    -1
    как использовать данный сплоит? (под форум SMF 1.1 RC3)

    _http://milw0rm.com/exploits/4547
     
  2. SanyaX

    SanyaX .::Club Life::.

    Joined:
    28 Jan 2005
    Messages:
    934
    Likes Received:
    394
    Reputations:
    261
    Не поца тупо не уметь пользоватся простыми, готовыми эксплойтами. Качай perl и запускай через него сплойт. Как запустишь там будут дальнейшие инструкции по приминению.
     
    #2 SanyaX, 3 Aug 2008
    Last edited: 4 Aug 2008
    1 person likes this.
  3. КИНГ

    КИНГ Elder - Старейшина

    Joined:
    13 Jun 2006
    Messages:
    129
    Likes Received:
    25
    Reputations:
    -1
    все сделал так же (качнул перл, запустил) дальше инструкций не следует
     
    1 person likes this.
  4. SanyaX

    SanyaX .::Club Life::.

    Joined:
    28 Jan 2005
    Messages:
    934
    Likes Received:
    394
    Reputations:
    261

    A Very Fast Blind Sql Injection Exploit for SMF 1.1.3.

    -p obtain passwords (if used without -u, then an admin credential
    will be obtained)
    -b installs a backdoor using 'into outfile'. (requires -c) **WARNI
    NG** SMF will log this as a single 'Hacking Attempt'!
    -t target
    -c A valid cookie(Much faster attack)

    Aditional:
    -u obtains the password for a user name
    -n number of threads
    -e Shows an Example.
    The password hash is generated as:
    sha1(strtolower() . );

    А это по твоему что такое???
     
    1 person likes this.
Thread Status:
Not open for further replies.