Waraxe IT Security Portal
Login or Register
May 1, 2025
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 89
Members: 0
Total: 89
Full disclosure
[IWCC 2025] CfP: 14th International Workshop on Cyber Crime -Ghent, Belgium, Aug 11-14, 2025
Inedo ProGet Insecure Reflection and CSRF Vulnerabilities
Ruby on Rails Cross-Site Request Forgery
Microsoft ".library-ms" File / NTLM Information Disclosure (Resurrected 2025)
HNS-2025-10 - HN Security Advisory - Local privilege escalation in Zyxel uOS
APPLE-SA-04-16-2025-4 visionOS 2.4.1
APPLE-SA-04-16-2025-3 tvOS 18.4.1
APPLE-SA-04-16-2025-2 macOS Sequoia 15.4.1
APPLE-SA-04-16-2025-1 iOS 18.4.1 and iPadOS 18.4.1
Business Logic Flaw: Price Manipulation - AlegroCartv1.2.9
Stored XSS in "Message" Functionality - AlegroCartv1.2.9
XSS via SVG Image Upload - AlegroCartv1.2.9
BBOT 2.1.0 - Local Privilege Escalation via Malicious ModuleExecution
83 vulnerabilities in Vasion Print / PrinterLogic
[CVE-2025-32102, CVE-2025-32103] SSRF and Directory Traversal in CrushFTP 10.7.1 and 11.1.0 (as well as legacy 9.x)
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 37 matches
BARRACUDA SPAM FIREWALL + WEBFILTER - UNLOCKING/ROOT ACCESS
PostForum:How to fix Posted: Fri Jul 31, 2009 4:44 pm Subject: BARRACUDA SPAM FIREWALL + WEBFILTER - UNLOCKING/ROOT ACCESS
tinman
Replies: 2
Views: 54226




BIOS PASSWORDS;
BIOS PW: 322232 32232 BCNDK1 ADMINBN99
DEFAULT PASSWORD (GUI) admin or adminbn99 (Listens on port 8000)
RAID PASSWORD 0000

Barracuda Spam & Virus Firewall Notes - How to get ...
Linux + root access to network appliances password
PostForum:All other hashes Posted: Fri Mar 20, 2009 12:36 pm Subject: Linux + root access to network appliances password
tinman
Replies: 0
Views: 6828




This is the shadow password from a widely deployed network security device. Could be very useful.

root:$1$2NVlp7G0$EoDgfwGBkSb/LOe7VgfQP/:0:0:root:/root:
Short Email HASH for bounce messages
PostForum:All other hashes Posted: Mon Jan 19, 2009 7:35 pm Subject: Short Email HASH for bounce messages
tinman
Replies: 0
Views: 5061




Is anyone really good at working out how a hash may have been put together?

<btv1==270870ea5a6==someone@somewhere.invalid>

Now we think the 270 means '7 days' with '269 meaning 6 days etc' ...
Usefulness Question: 1 - Cookie Stealing
PostForum:Newbies corner Posted: Thu Jul 03, 2008 6:52 am Subject: Usefulness Question: 1 - Cookie Stealing
tinman
Replies: 0
Views: 5860




I was looking through a grabber log that I set up on a server, and I spotted this in the headers:

ASPSESSIONIDSSBCCCDB=KDKNBCLBGIMKJHCKHDBCLAJF; phpbb2mysql_data=a%3A2%3A%7Bs%3A11%3A%22autologinid% ...
SMF exploit problem to start !
PostForum:Newbies corner Posted: Tue Jun 17, 2008 11:53 am Subject: SMF exploit problem to start !
tinman
Replies: 8
Views: 22023




I got the session ID from 'live http headers' in firefox. I cut/paste it from the cookie section:

Cookie: __utmz=61161705.1212840634.1.1.utmccn=(direct)|utmcsr=(direct)|utmcmd=& ...
SMF exploit problem to start !
PostForum:Newbies corner Posted: Tue Jun 17, 2008 8:52 am Subject: SMF exploit problem to start !
tinman
Replies: 8
Views: 22023




Thanks anyway!
Does this tell me anything useful
PostForum:Newbies corner Posted: Tue Jun 17, 2008 7:29 am Subject: Does this tell me anything useful
tinman
Replies: 33
Views: 47002




Coming back to this, I've spent a few weeks playing and I've come up with a potential target. Windows server running MySQL (yum!)

The page concerned is a form processing thing which uses post

ht ...
SMF exploit problem to start !
PostForum:Newbies corner Posted: Tue Jun 17, 2008 7:23 am Subject: SMF exploit problem to start !
tinman
Replies: 8
Views: 22023




I've had a play with this but a lack of documentation does not help. What I get with it (target is smf 1.1.4) is this:

[.] Exploit Starts.
[+] Trying to read Sesc
[-] Unable to find Sesc

I've ...
Can I hack phpbb forum poster login password?
PostForum:PhpBB Posted: Sun Jun 15, 2008 12:18 pm Subject: Can I hack phpbb forum poster login password?
tinman
Replies: 3
Views: 16198




Would you believe that I have found a 2.0.8 phpbb running on a website belonging to a big player in the IT security market! I'm not allowed to name them, but an unusual fish starting with 'B' is a clu ...
SQL Injection V Access
PostForum:Sql injection Posted: Sun Jun 08, 2008 5:58 pm Subject: SQL Injection V Access
tinman
Replies: 2
Views: 8756




Microsoft JET Database Engine error '80040e37'

The Microsoft Jet database engine cannot find the input table or query 'users'. Make sure it exists and that its name is spelled correctly.

/login. ...
SQL Injection V Access
PostForum:Sql injection Posted: Sun Jun 08, 2008 1:27 pm Subject: SQL Injection V Access
tinman
Replies: 2
Views: 8756




Stumbled across a site with (perhaps) an insecure access DB. I appreciate they are not much use (unless you can run VB script through them???).

I know that you can't comment out access like proper ...
Enumerating IP to Shared Website
PostForum:Newbies corner Posted: Sun Jun 08, 2008 1:23 pm Subject: Enumerating IP to Shared Website
tinman
Replies: 4
Views: 10067




Thank you gentlemen. I really wanted to work out how to do it myself. I'm not as logical as I could be.

I figure that each domain has a DNS entry somewhere pointing to an IP. I just can't see how y ...
Hacking admin pass
PostForum:PhpBB Posted: Sat Jun 07, 2008 4:19 pm Subject: Hacking admin pass
tinman
Replies: 4
Views: 13221




You tried: host/forum/docs/CHANGELOG.html ?

That will help you with the version, but as for a password this is set on installation - so nothing standard.
Enumerating IP to Shared Website
PostForum:Newbies corner Posted: Sat Jun 07, 2008 4:15 pm Subject: Enumerating IP to Shared Website
tinman
Replies: 4
Views: 10067




Good afternoon Gentlemen,

I'm still having trouble finding a reliable way to enumerate a host IP address so that I can resolve all of the domain names/websites running on it.

I've used a couple ...
Does this tell me anything useful
PostForum:Newbies corner Posted: Fri May 30, 2008 2:49 pm Subject: Does this tell me anything useful
tinman
Replies: 33
Views: 47002




I feel such an idiot! I've actually bothered to look at the HTML (yep, the first base that I skipped) and this page is linking to someone elses script. What a fool I am!

<form method="get&q ...
Page 1 of 3 Goto page 1, 2, 3Next
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.054 Seconds