  | 
	 | 
	  | 
 
 
    
        
          
              
                
                    
                      
                          
                            
                            
	
	
		  | 
		 | 
	 
	
		  | 
		IT Security and Insecurity Portal | 
	 
	 
	 | 
 
 
 
	  | 
	Question ? | 
	  | 
 
 
	
	
		 Posted: Mon Mar 03, 2008 2:11 pm | 
		      | 
	   | 
 
	
	
		
		
			
			
				
				| kr0k0 |  
				| Advanced user |  
				 
   |  
				 |  
				| Joined: Jan 26, 2008 |  
				| Posts: 128 |  
				 |  
				  | 
			 
			 
 
  | 
			  | 
		 
		
			  | 
			  | 
		 
		 
 
  | 
		
		
			hey i have find 2 exploits SQL injection :
 
I have password & user
 
 
 
 	  | Code: | 	 		  ('1','6','','0','root','e44cdd59815b0a6794707547e4789519','2007-07-14','webmaster@site.com','0','','','','','','2','2','Administrator','0','1184420534','0','1197809736','1197809736','1188995437','0','10','1','','0','0','0','0','2263','','0000-00-00','-1','1','','0','0','','0','0','-1','0','0','!b{')
 
 
http://www.site.com/vb/
 
User : root
 
Password : e44cdd59815b0a6794707547e4789519 | 	  
 
 
 
 
 	  | Code: | 	 		  admin:ce51b869ca72957e54a6a80fb4ee96bc:SUtfZ1NZohVmsrCM
 
 
http://www.site.com/joomla/
 
User : admin
 
Password : ce51b869ca72957e54a6a80fb4ee96bc | 	  
 
 
 
1- what is this ? :  SUtfZ1NZohVmsrCM
 
2- where is the Salt ?
 
3- whene the password is not Decrypted , i can edit cookies ?
 
4- How ? joomla and Vbulletin
 
 
thankx u ...! | 
		 
		  | 
	 
	
		 | 
	 
	  | 
 
	 | 
 
 
	
	
		 Posted: Tue Mar 04, 2008 5:09 pm | 
		      | 
	   | 
 
	
	
		
		
			
			
				
				| kr0k0 |  
				| Advanced user |  
				 
   |  
				 |  
				| Joined: Jan 26, 2008 |  
				| Posts: 128 |  
				 |  
				  | 
			 
			 
 
  | 
			  | 
		 
		
			  | 
			  | 
		 
		 
 
  | 
		
		
			i need a answer please waraxe & koko     ? | 
		 
		  | 
	 
	
		 | 
	 
	  | 
 
	 | 
 
 
	  | 
	Re: Question ? | 
	  | 
 
 
	
	
		 Posted: Tue Mar 04, 2008 6:46 pm | 
		      | 
	   | 
 
	
	
		
		
			
			
				
				| pexli |  
				| Valuable expert |  
				 
   |  
				 |  
				| Joined: May 24, 2007 |  
				| Posts: 665 |  
				| Location: Bulgaria |  
				  | 
			 
			 
 
  | 
			  | 
		 
		
			  | 
			  | 
		 
		 
 
  | 
		
		
			 	  | kr0k0 wrote: | 	 		  hey i have find 2 exploits SQL injection :
 
I have password & user
 
 
 
 	  | Code: | 	 		  ('1','6','','0','root','e44cdd59815b0a6794707547e4789519','2007-07-14','webmaster@site.com','0','','','','','','2','2','Administrator','0','1184420534','0','1197809736','1197809736','1188995437','0','10','1','','0','0','0','0','2263','','0000-00-00','-1','1','','0','0','','0','0','-1','0','0','!b{')
 
 
http://www.site.com/vb/
 
User : root
 
Password : e44cdd59815b0a6794707547e4789519 | 	  
 
 
 
 
 	  | Code: | 	 		  admin:ce51b869ca72957e54a6a80fb4ee96bc:SUtfZ1NZohVmsrCM
 
 
http://www.site.com/joomla/
 
User : admin
 
Password : ce51b869ca72957e54a6a80fb4ee96bc | 	  
 
 
 
1- what is this ? :  SUtfZ1NZohVmsrCM
 
2- where is the Salt ?
 
3- whene the password is not Decrypted , i can edit cookies ?
 
4- How ? joomla and Vbulletin
 
 
thankx u ...! | 	  
 
 
1.I never work with joomla.I don't know.
 
2.root:e44cdd59815b0a6794707547e4789519:!b{
 
3.I think you don't find not crypted passwords in this two soft's.
 
4.I don't understand question. | 
		 
		  | 
	 
	
		 | 
	 
	  | 
 
	 | 
 
 
  |   
	  | 
	 | 
	  | 
 
 
	
	
		 Posted: Tue Mar 18, 2008 4:49 pm | 
		      | 
	   | 
 
	
	
		
		
			
			
				
				| waraxe |  
				| Site admin |  
				 
   |  
				 |  
				| Joined: May 11, 2004 |  
				| Posts: 2407 |  
				| Location: Estonia, Tartu |  
				  | 
			 
			 
 
  | 
			  | 
		 
		
			  | 
			  | 
		 
		 
 
  | 
		
		
			ce51b869ca72957e54a6a80fb4ee96bc - newbea
 
 
e44cdd59815b0a6794707547e4789519 - xeon
 
 
   | 
		 
		  | 
	 
	
		 | 
	 
	  | 
 
	 | 
 
 
	
	
		 Posted: Wed Mar 19, 2008 10:12 am | 
		      | 
	   | 
 
	
	
		
		
			
			
				
				| w0rm |  
				| Active user |  
				 
   |  
				 |  
				| Joined: Feb 22, 2008 |  
				| Posts: 49 |  
				 |  
				  | 
			 
			 
 
  | 
			  | 
		 
		
			  | 
			  | 
		 
		 
 
  | 
		
		
			 	  | Code: | 	 		  b6fbd5ecc750e13dd47ffe5c8bd4c35e 
 
f4d6d12d5530ed40802d2790a67b67a0
 
96a59a449d37b84d7ef263f905a40530 | 	  
 
 
any one ? | 
		 
		  | 
	 
	
		 | 
	 
	  | 
 
	 | 
 
 
	
	www.waraxe.us Forum Index -> All other security holes 
	
	
		
			You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum 
		 | 
		
			All times are GMT 
			Page 1 of 1
			 
			
		 | 
	 
	 
	 | 
 
	| 
	 | 
 
 
  
Powered by phpBB © 2001-2008 phpBB Group
 
  
 
 
 | 
                           
                         
                         | 
                     
                    | 
               
              | 
         
       
       |