Waraxe IT Security Portal
Login or Register
September 1, 2025
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 110
Members: 0
Total: 110
Full disclosure
Multi-Protocol Traceroute
SEC Consult SA-20250728-0 :: Stored Cross-Site-Scripting in Optimizely Episerver CMS
SEC Consult SA-20250807-0 :: Race Condition in Shopware Voucher Submission
Insufficient Resource Allocation Limits in nopCommerce v4.10 and v4.80.3 Excel Import Functionality
CSV Injection in nopcommerce v4.10 and 4.80.3
Insufficient Session Cookie Invalidation in nopCommerce v4.10and 4.80.3
Session Fixation Vulnerability in iDempiere WebUI v12.0.0.202508171158
CSV Injection in iDempiere WebUI 12.0.0.202508171158
liblcf v0.8.1 liblcf/lcf2xml: Untrusted LCF data triggers uncaught std::length_error via negative vector resize (DoS)
liblcf v0.8.1 Integer Overflow in liblcf `ReadInt()` Leads to Out-of-Bounds Reads and Denial of Service
Piciorgros TMO-100: Unauthorized configuration change via TFTP (CVE-2025-29617)
Piciorgros TMO-100: Unauthorized log data access
[tool] CRSprober
iOS 18.6 - Undocumented TCC Access to Multiple Privacy Domainsvia preflight=yes
Kigen eUICC issue (custom backdoor vs. FW update bug)
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index -> PhpBB -> PHPBB noob, not total noob, needs help
Post new topicReply to topic View previous topic :: View next topic
PHPBB noob, not total noob, needs help
PostPosted: Tue Feb 19, 2008 11:18 am Reply with quote
RustedEarth
Beginner
Beginner
Joined: Feb 19, 2008
Posts: 1




I'm trying to gain admin access to, or shut down, or even deface, a phpbb forum, and I can't even judge the version because the changelog page doesnt exist, or the name has been changed.

The forum is (just read I cant post that)

I've had a long time gripe with the owner and I'd like to, say, edit, a few things if I could.

If I can even just mildly deface it as a "I was here" sort of thing, would be fantastic.

Any help of any kind would be greatly appreciated.

Thanks in advance. I'll be around daily.

I tried the cookie-admin-hack but it appears it did not work, unless I did it incorrectly. :\

So, can you tell me how to figure out the version, so that I can more accuratly look for exploits for that version?

-Rusted
View user's profile Send private message
PostPosted: Wed Feb 20, 2008 5:43 am Reply with quote
gibbocool
Advanced user
Advanced user
Joined: Jan 22, 2008
Posts: 208




if the changelog.html file isn't there chances are the admin knows about phpbb exploits and will keep his site up to date.
Only thing you could do is try some <= 2.0.20 exploits as far as i can tell.

Otherwise find out if the site is on a system that hosts other sites and try get in through other sites.
View user's profile Send private message Visit poster's website
PHPBB noob, not total noob, needs help
www.waraxe.us Forum Index -> PhpBB
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
All times are GMT
Page 1 of 1

Post new topicReply to topic


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.026 Seconds