Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Owl Intranet Engine - bypass admin

From: cdowns <cdowns(at)drippingdead.com>
Date: Tue May 13 2003 - 18:26:39 EDT


Good Afternoon,

    After working on a pen-test this week I came across OWL ( Owl Intranet Engine ) which is and open source file sharing utility written in php and run on Apache. I was trying to see where I could possible Inject, CSS or just plane command line exec.

    browse.php which requires("owl.lib.php"), there is a function that is not checking valid loginame:passwords. So you can view and download any file on the system, you can also modify them.

    I have not gotten to deep into this as I have other things to do as well. If anyone has any comments please feel free to share. Im pretty shure you could do a little more;)

    If you want to look here is the main hosted site, its -> http://owl.sourceforge.net/

    heres is a sample:        

http://www.someplace.com/intranet/browse.php?loginname=whocares&parent=1&expand=1&order=creatorid&sortposted=ASC

    Thanks all.

Do you need help?X

~!>D

-- 
------------------------------------------
      Network Security Engineer 
      
http://www.angrypacket.com
       Christopher M Downs,RHCE
     cdowns@bigunz.angrypacket.com
	
   char ash[]="\x48\x61\x69\x6C\x20"
   "\x74\x6F\x20\x74\x68\x65\x20\x4B"
   "\x69\x6E\x67";
-------------------------------------------




---------------------------------------------------------------------------
*** Wireless LAN Policies for Security & Management - NEW White Paper ***
Just like wired networks, wireless LANs require network security policies 
that are enforced to protect WLANs from known vulnerabilities and threats. 
Learn to design, implement and enforce WLAN security policies to lockdown enterprise WLANs.

To get your FREE white paper visit us at:    
http://www.securityfocus.com/AirDefense-pen-test
----------------------------------------------------------------------------
Received on Tue May 13 19:34:23 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:02:36 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library