Jump to content
Paul4games

A very easy exploit to hack fourms with!

Recommended Posts

Posted

With this vulnerability we can gain admin to any forum that uses Fubarforum 1.6 , This is a VERY easy exploit and is good for beginners!

Now you can see what's hidden

To find the Vulnerability go to

Code:

milw0rm - exploits : vulnerabilities : videos : papers : shellcode

and search Fubarforum.

We will be using a FubarForum 1.6 Arbitrary Admin Bypass Vulnerability so click on it and it will open a new page.

Now here we see

Code:

Dork : "Powered by FubarForum v1.6"

/forum/index.php?page=admin.

Next we want to find sites that we can use this exploit on so we use GOOGLE!! and search "Powered by FubarForum v1.6"

As you can see this exploit is popular because it is so easy and many sites have been hacked,

Pick a site you are wanting to hack ( it is probably a good idea to use a proxy)

Now its time to use the Vulnerability, at the end of the web address add "/forum/index.php?page=admin" to it so it should be like this or similar to "www.xxxx.xxx/forum/index.php?page=admin"

The resulting page should allow you to have admin access and you can now create and remove forum categories etc.

All credist reserverd by The_unk0wn for the tutorial and for exploit idk

Posted

..:: R31P0l[at]hotmail.com ::.. 


Tanx from : str0ke


Script : FubarForum

Version : 1.6

Dork : "Powered by FubarForum v1.6"

/forum/index.php?page=profile&user_id=1

Greetz to:
# Corenamed, Unsecured, Esedark, pax0r, zrallter, th0r... and TerminalHacker

# milw0rm.com [2008-12-29]

Cum zice nytro, stupid, si comic :D:D:D (cand cauti dupa dork toate sunt "Hacked by :) )

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...