Waraxe IT Security Portal
Login or Register
September 11, 2026
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 772
Members: 0
Total: 772
Full disclosure
[0day-rubbish] Royal Server 5.04.50529.0 Local privilege escalation to LocalSystem on the execution path without credential override (7.2)
[0day-rubbish] core-admin 1.0.164 (build 16468) Systemic shell command injection via ineffective quote escaping (8.8)
[0day-rubbish] OP5 Monitor 9.20 Command injection surviving the CVE-2025-34115 patch (OPT-IN fix ineffective) (8.8)
[0day-rubbish] QuantaStor 6.8.3.018 Command injection in the alert-mail command via the smtpPassword field (8.8)
[0day-rubbish] SmarterMail 100.0.9693 (Build 9693) Antivirus command-line configuration executing as NT AUTHORITY\SYSTEM (7.2)
[0day-rubbish] Jitterbit Agent 12.8.1.6 (Docker jitterbit/agent:12.8.1.6) Unauthenticated SOAP with hard-coded credentials leading to OS command execution (9.8)
[0day-rubbish] Accurate Online Private Cloud on-prem (current) Unauthenticated Hessian deserialization leading to JNDI remote class loading (9.8)
[0day-rubbish] DBxtra .NET 13.1.1.0 Unauthenticated SOAP API to xp_cmdshell code execution (9.8)
**Subject:** CVE-2026-2035703: Tozed ZLT X300 5G CPE — Unauthenticated Remote Root Code Execution via TR-069 Command Injection (CVSS 9.8)
CVE-2026-52307: Stored XSS in 1CMS v5.6
HP Easy Start for macOS: CVE-2026-12554 / CVE-2026-12555 /CVE-2026-12556
Next.js 16.4.0-canary.13 Image Optimizer DNS Rebinding TOCTOU SSRF Still Exists
O-CMS 1.0.0 Authenticated OS Command Injection viaai_cli_script
Flextype v1.0.0-alpha.3 CMS registerShortcodes() Remote Code Execution via Attacker-Controlled File Inclusion
Flextype v1.0.0-alpha.3 Stored Fetch Shortcode Allows Server-Side Request Forgery
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 17 matches
PHP-Nuke <= 7.9 SQL Injection and Bypass SQL Inj. filters
PostForum:PhpNuke Posted: Mon Nov 06, 2006 10:16 am Subject: PHP-Nuke <= 7.9 SQL Injection and Bypass SQL Inj. filters
bima
Replies: 6
Views: 19510




I forgot to talk about magic_quotes_gpc... the critical bug is the sql injection protection bypass... the encyclopedia module bug is a stupid one, there are some more sql injection vulnerabilities on ...
can any one help me decode this.....
PostForum:PHP script decode requests Posted: Sat Nov 04, 2006 10:32 pm Subject: can any one help me decode this.....
bima
Replies: 4
Views: 14206




Hmm, there is need for original file. So please upload it to somewhere and then post here url. And before upload pach that php file with zip archiver, so that it will be exactly byte-by-byte as origin ...
Who is JackFromWales4u2?
PostForum:PhpNuke Posted: Mon Sep 06, 2004 10:58 am Subject: add user admin
bima
Replies: 8
Views: 17204




Thats exploits can only add or del admin account..
We are talking about user account..

plz read carefully, do u ???

Smile
Who is JackFromWales4u2?
PostForum:PhpNuke Posted: Mon Sep 06, 2004 8:26 am Subject: add user with POST method
bima
Replies: 8
Views: 17204




see :

http://www.securityfocus.com/archive/1/374110/2004-09-03/2004-09-09/0

the POST method more nice to check the HTTP respons of the target.

the GET method more difficult to parsing the HTT ...
WebAPP newest bug mass scanner
PostForum:Perl Posted: Thu Sep 02, 2004 1:31 am Subject: okay
bima
Replies: 2
Views: 32465




thanx bro...

Smile
mass scanner of PhpNuke bug
PostForum:PhpNuke Posted: Wed Sep 01, 2004 7:26 am Subject: mass scanner of PhpNuke bug
bima
Replies: 7
Views: 17749




let see the output snipped :


870. http://www.ppp-kepri.or.id
Processing http://www.ppp-kepri.or.id.....
Proses GET sedang berlangsung...
http://www.ppp-kepri.or.id/modules.php?name=Search& ...
WebAPP newest bug mass scanner
PostForum:Perl Posted: Wed Sep 01, 2004 7:19 am Subject: WebAPP newest bug mass scanner
bima
Replies: 2
Views: 32465




ok, let me introduce my new script :
WebAPP newest bug mass scanner

it wrote in perl.

ucan see it at
http://www.neoteker.or.id/modules.php?op=modload&name=News&file=article&sid=13 ...
mass scanner of PhpNuke bug
PostForum:PhpNuke Posted: Tue Aug 31, 2004 7:47 am Subject: news
bima
Replies: 7
Views: 17749




right now, i tested new script that do mass scanning of
phpnuke Search modul bug.
see http://www.waraxe.us/?modname=sa&id=036

then i found that many vulnerable site did not patch (yet).

...
simple md5 hash cracker (dictionary attack) against phpnuke
PostForum:PhpNuke Posted: Tue Aug 31, 2004 7:17 am Subject: news
bima
Replies: 3
Views: 13423




u can obtain it at :

http://packetstormsecurity.org/Crackers/md5_cracker.pl

Smile
proftp exploit no work
PostForum:Perl Posted: Tue Aug 24, 2004 2:38 am Subject: proftp exploit no work
bima
Replies: 3
Views: 14145




u see the date of posting ?

19/6/2003
SQL Inject in ProFTPD Login against PostgreSQL Using mod_sql

that's too old Sad

r u sure that u test that script to the right version of proftpd ?

:r ...
mass scanner of PhpNuke bug
PostForum:PhpNuke Posted: Mon Aug 23, 2004 10:31 am Subject: sorry
bima
Replies: 7
Views: 17749




sorry, next time maybe i have time to translate it...

Crying or Very sad
simple md5 hash cracker (dictionary attack) against phpnuke
PostForum:PhpNuke Posted: Mon Aug 23, 2004 10:11 am Subject: thx
bima
Replies: 3
Views: 13423




thx bro...

next time i'll be make it more great...

Twisted Evil Twisted Evil Twisted Evil Twisted Evil Twisted Evil
Bypass authentication
PostForum:Newbies corner Posted: Mon Aug 23, 2004 7:44 am Subject: Re: hey there
bima
Replies: 6
Views: 17523





And one more thing - mysql does not support multiple sql queries through php scripts, so forget about "... ; DROP TABLE ..." Wink

u right , maybe the next mysql version have this feature,
so ...
simple md5 hash cracker (dictionary attack) against phpnuke
PostForum:PhpNuke Posted: Mon Aug 23, 2004 6:51 am Subject: simple md5 hash cracker (dictionary attack) against phpnuke
bima
Replies: 3
Views: 13423




Again, let me introduce our perl script :
simple md5 hash cracker (dictionary attack) against phpnuke hash password.

u can see at :
http://www.neoteker.or.id/modules.php?op=modload&name=News& ...
mass scanner of PhpNuke bug
PostForum:PhpNuke Posted: Mon Aug 23, 2004 6:41 am Subject: mass scanner of PhpNuke bug
bima
Replies: 7
Views: 17749




sorry, that's indonesian languange.

thx bro.

Laughing Laughing Laughing
Page 1 of 2 Goto page 1, 2Next
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.042 Seconds