1
Noticias Informáticas / Re: Errores críticos en Control Web Panel exponen servidores Linux a ataques RCE
« on: January 29, 2022, 07:53:15 pm »
Esta bueno el bypass.
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
Buen dia amigos,
Alguien podría explicarme un poco como funciona el backdoorQuote2. include() - Requiere: allow_url_fopen.
estoy intentando ver como funciona tal como esta en el post, pero me queda la pantalla en blanco (no muestra nada), muy agradecido de antemano.
Saludos a todos
<?php
$secret = md5('arthusu');
if(isset($_GET['user']))
{
echo md5($secret . ':user');
exit;
}
if(isset($_GET['admin']))
{
echo md5($secret . ':admin');
}
$signature = md5($secret . ':' . $_GET['type']);
if($signature == $_GET['sig'])
{
$data = explode(':', $_GET['type']);
if(end($data) == 'admin')
{
echo 'Tu eres administrador';
}
else
{
echo 'Tu eres un usuario';
}
}
else
{
echo 'Firma invalida';
}
?>
Type: md5
Secret length: 7
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00X%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 8
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%60%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 9
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00h%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 10
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00p%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 11
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00x%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 12
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%80%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 13
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%88%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 14
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%90%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 15
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%98%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 16
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%a0%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 17
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%a8%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 18
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%b0%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 19
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%b8%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 20
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%c0%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 21
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%c8%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 22
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%d0%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 23
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%d8%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 24
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%e0%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 25
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%e8%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 26
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%f0%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 27
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%f8%00%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 28
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%01%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 29
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%08%01%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 30
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%10%01%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 31
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%18%01%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 32
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00+%01%00%00%00%00%00%00%3aadmin
Type: md5
Secret length: 33
New signature: 12005b20185a5b3feb166cf9017ffa56
New string: user%80%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%00%28%01%00%00%00%00%00%00%3aadmin
Input Signature: 38f7e2f0c5eba427ed6b4b47f24814ea
Input Data: :user
Input Key Length: 32
Input Data to Add: :admin
12005b20185a5b3feb166cf9017ffa56
:user\x80\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00(\x01\x00\x00\x00\x00\x00\x00:admin
python3 theHarvester.py -d underc0de.org -b virustotal -c
<script src="http://pentesterlab.com/arthusublog.js?var=alert(1);" />
java -jar selenium-server-standalone-3.8.1.jar -enablePassThrough false