Waraxe IT Security Portal
Login or Register
September 17, 2026
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 531
Members: 0
Total: 531
Full disclosure
[0day-rubbish] Royal Server 5.04.50529.0 Local privilege escalation to LocalSystem on the execution path without credential override (7.2)
[0day-rubbish] core-admin 1.0.164 (build 16468) Systemic shell command injection via ineffective quote escaping (8.8)
[0day-rubbish] OP5 Monitor 9.20 Command injection surviving the CVE-2025-34115 patch (OPT-IN fix ineffective) (8.8)
[0day-rubbish] QuantaStor 6.8.3.018 Command injection in the alert-mail command via the smtpPassword field (8.8)
[0day-rubbish] SmarterMail 100.0.9693 (Build 9693) Antivirus command-line configuration executing as NT AUTHORITY\SYSTEM (7.2)
[0day-rubbish] Jitterbit Agent 12.8.1.6 (Docker jitterbit/agent:12.8.1.6) Unauthenticated SOAP with hard-coded credentials leading to OS command execution (9.8)
[0day-rubbish] Accurate Online Private Cloud on-prem (current) Unauthenticated Hessian deserialization leading to JNDI remote class loading (9.8)
[0day-rubbish] DBxtra .NET 13.1.1.0 Unauthenticated SOAP API to xp_cmdshell code execution (9.8)
**Subject:** CVE-2026-2035703: Tozed ZLT X300 5G CPE — Unauthenticated Remote Root Code Execution via TR-069 Command Injection (CVSS 9.8)
CVE-2026-52307: Stored XSS in 1CMS v5.6
HP Easy Start for macOS: CVE-2026-12554 / CVE-2026-12555 /CVE-2026-12556
Next.js 16.4.0-canary.13 Image Optimizer DNS Rebinding TOCTOU SSRF Still Exists
O-CMS 1.0.0 Authenticated OS Command Injection viaai_cli_script
Flextype v1.0.0-alpha.3 CMS registerShortcodes() Remote Code Execution via Attacker-Controlled File Inclusion
Flextype v1.0.0-alpha.3 Stored Fetch Shortcode Allows Server-Side Request Forgery
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 35 matches
Passwords pro
PostForum:Newbies corner Posted: Thu Feb 07, 2008 9:53 pm Subject: Passwords pro
Vixje
Replies: 9
Views: 15778




hehe Smile Try to learn a pogramming language to begin with. I suggest u start off with something like C#
Discover version
PostForum:Invision Power Board Posted: Sun Feb 03, 2008 3:36 pm Subject: Discover version
Vixje
Replies: 1
Views: 8719




Hey guys,

Does anyone have a trick to see the current versions of todays modern invision power board forums?
How did they get the md5's from my friends website?
PostForum:Newbies corner Posted: Sat Feb 02, 2008 2:49 pm Subject: How did they get the md5's from my friends website?
Vixje
Replies: 3
Views: 9433




Thanks, i think that was it!

The script doesnt seem to work though unfortunally.

Nomatter what url or path I provide, always the error Error:Libcurl isnt installed.
How did they get the md5's from my friends website?
PostForum:Newbies corner Posted: Sat Feb 02, 2008 2:07 pm Subject: How did they get the md5's from my friends website?
Vixje
Replies: 3
Views: 9433




Hi there,

My friend's website got compromised. And i'm trying to figure out how. Now he has been using Wordpress, and I found a certain plugin he uses which has a exploit available on the net. Belo ...
PUNbb sql injection
PostForum:All other software Posted: Sat Aug 26, 2006 2:43 pm Subject: PUNbb sql injection
Vixje
Replies: 2
Views: 11204




Hi there,


I am able to insert this command using the administration panel of the forum. There is also a backup feature but its not working so i need to try this manually.

I managed to get sql ...
Request for a Tagalog (Philippines) dictionary file
PostForum:Wordlists Posted: Sun Aug 20, 2006 5:56 pm Subject: Request for a Tagalog (Philippines) dictionary file
Vixje
Replies: 0
Views: 9673




As the subject says, i've been looking and poking around for a while now but i just cant get my hands on a philippine/tagalog word list. If anybody could help me out that would be just great Smile

Tha ...
test horde webmail vulnerability
PostForum:All other software Posted: Thu Aug 03, 2006 9:04 pm Subject: test horde webmail vulnerability
Vixje
Replies: 14
Views: 25091




Thanks a lot for helping me think this one out hehe, and thanks for having me as a visitor on your forum. This board is one of the few where I can find some more serious people around without speaking ...
test horde webmail vulnerability
PostForum:All other software Posted: Thu Aug 03, 2006 8:48 pm Subject: test horde webmail vulnerability
Vixje
Replies: 14
Views: 25091




No, here's what happens:

horddy> cd
C:\Inetpub\vhosts\webmail\horde\services\help

So if " is a problem, maybe i can use the windows shortcuts, like progra~1 for program files f.e.

cd c:\ ...
test horde webmail vulnerability
PostForum:All other software Posted: Thu Aug 03, 2006 8:22 pm Subject: test horde webmail vulnerability
Vixje
Replies: 14
Views: 25091




I've been testing a bit more, here's my results:

When i locally execute:
perl -e system(ftp)

The cli replies with a ftp>, allowing to to ftp.

When i use this at the remote host,
horddy&g ...
test horde webmail vulnerability
PostForum:All other software Posted: Thu Aug 03, 2006 6:30 pm Subject: test horde webmail vulnerability
Vixje
Replies: 14
Views: 25091




Woah, bingo Wink Damn you are good hehe.

Usage: C:\Program Files\SWsoft\Plesk\Additional\Perl\bin\perl.exe [switches] [--] [programfile] [arguments]
-0[octal] specify record separator (\0, i ...
test horde webmail vulnerability
PostForum:All other software Posted: Thu Aug 03, 2006 6:15 pm Subject: test horde webmail vulnerability
Vixje
Replies: 14
Views: 25091




As much as i know, win 2003/2000/xp does not have "whoami" and "who" utilities, as in unix.
Now, ftp.exe and tftp.exe are residing in "windows/system32" directory and if user has low privileges, then ...
test horde webmail vulnerability
PostForum:All other software Posted: Thu Aug 03, 2006 5:58 pm Subject: test horde webmail vulnerability
Vixje
Replies: 14
Views: 25091




horddy> ftp --help
horddy>

nope didnt work im affraid, strange i would expect also less priveleged accounts would have ftp --help access. Is there a sort of, who am i, in windows?

Hmm, SE ...
test horde webmail vulnerability
PostForum:All other software Posted: Thu Aug 03, 2006 5:46 pm Subject: test horde webmail vulnerability
Vixje
Replies: 14
Views: 25091




horddy> ver

Microsoft Windows [Version 5.2.3790]
horddy>

ok, so that seems to work.

mkdir test, doesnt work, and also i cannot go outside of the folder i'm in.
MD5 Help?
PostForum:All other hashes Posted: Tue Aug 01, 2006 9:11 pm Subject: MD5 Help?
Vixje
Replies: 11
Views: 19626




i was able to recover 3rd and 7th password using a wordlist. Both are: microsoft
test horde webmail vulnerability
PostForum:All other software Posted: Tue Aug 01, 2006 7:38 pm Subject: test horde webmail vulnerability
Vixje
Replies: 14
Views: 25091




Hi there,

I am testing a vulnerability on a horde webmail page:

Here's the perl script:

http://www.milw0rm.com/exploits/1650

When I execute this script, i seem to arrive within a shell and ...
Page 1 of 3 Goto page 1, 2, 3Next
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.048 Seconds