Nytro Posted June 23, 2012 Report Posted June 23, 2012 1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=00 _ __ __ __ 11 /' \ __ /'__`\ /\ \__ /'__`\ 00 /\_, \ ___ /\_\/\_\ \ \ ___\ \ ,_\/\ \/\ \ _ ___ 11 \/_/\ \ /' _ `\ \/\ \/_/_\_<_ /'___\ \ \/\ \ \ \ \/\`'__\ 00 \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/ 11 \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\ 00 \/_/\/_/\/_/\ \_\ \/___/ \/____/ \/__/ \/___/ \/_/ 11 \ \____/ >> Exploit database separated by exploit 00 \/___/ type (local, remote, DoS, etc.) 11 10 [x] Official Website: http://www.1337day.com 01 [x] Support E-mail : mr.inj3ct0r[at]gmail[dot]com 10 01 ========================================== 10 I'm Taurus Omar Member From Inj3ct0r TEAM 11 ========================================== 00-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-=-1| || C _:_ A | | C _:_ A || Google Maps - Remote File Disclosure /SQL Injection Vulnerability |--------------------------------------------------------------------------==> ABOUT ME:--- TAURUS OMAR--- INDEPENDENT SECURITY RESEARCHER--- ACCESOILEGAL.BLOGSPOT.COM--- @omartaurus--- omar-taurus[at]dragonsecurity[dot]org --- omar-taurus[at]live[dot]com===> INFO:Author : TAURUS OMARCategory : Webapps / 0day Title Exploit : Google Maps - Remote File Disclosure /SQL Injection VulnerabilityVendor : Google MapsURL Vendor : http://maps.google.com/0day exploits : 1337day.com Inj3ct0r Exploit DataBase ++++++++++++++++++++++++++++++++++++Proof of CONCEPT IMAGES :http://img256.imageshack.us/img256/5621/googlemapsr.jpghttp://img341.imageshack.us/img341/995/googlemaps2i.jpg++++++++++++++++++++++++++++++++++++==> SAMPLE'S SQLi:http://maps.google.com/maps?q=1001%20+longwod+%20road+%2019348 [SQL Injection]http://maps.google.com/maps?q=1001%20+Webb%20+Rd+%20Chadds%20+Ford+%20Delaware+%20Pennsylvania+%2019317 [SQL Injection]http://maps.google.com/maps?q=1001%20+Webb%20+Rd+%20Wolverine+%20Cheboygan+%20Michigan+%2049799 [SQL Injection]http://maps.google.com/maps?q=1001%20+Webb%20+Rd+%20Crum+%20Wayne+%20West+%20Virginia+%2025669 [SQL Injection]http://maps.google.com/maps?q=1001%20+Webb%20+Rd+%20Simpsonville+%20Shelby+%20Kentucky+%2040067 [SQL Injection]http://maps.google.com/maps?q=1001%20+Webb%20+Rd+%20Cottage+%20Grove+%20Weakley+%20Tennessee+%2038224 [SQL Injection]http://maps.google.com/maps?q=1001%20+Webb%20+Rd+%20Dothan+%20Houston+%20Alabama+%2036303 [SQL Injection]http://maps.google.com/maps?q=1001%20+Webb%20+Rd+%20Clarksville+%20Montgomery+%20Tennessee+%2037040 [SQL Injection]http://maps.google.com/maps?q=1001%20+Webb%20+Rd+%20Chattanooga+%20Hamilton+%20Tennessee+%2037416 [SQL Injection]http://maps.google.com/maps?q=1001%20+Webb%20+Rd+%20Ellenboro+%20Rutherford+%20North+%20Carolina+%2028040 [SQL Injection]==>REMOTE FILE DISCLOSUREhttp://maps.google.com/ads/displaynetwork/adtypes/xxxxx/../../../../maps/ms----------------------------------------------------------------------------http://maps.google.com/ads/displaynetwork/adtypes/hilton-300x250.html/../../../../maps/mshttp://maps.google.com/ads/displaynetwork/adtypes/lenovo-728x90.html/../../../../maps/ms# 1337day.com [2012-06-22]Sursa: Inj3ct0r Member found Google Maps Remote File Disclosure / SQL Injection | Inj3ct0r - exploit database : vulnerability : 0day : shellcodeNu pare sa mearga, nu acum Oricum injectorii astia sunt de cacat, se lauda cu exploit-uri gasite de altii si sunt cam paraleli cu orice, deci probabil fake, dar na, nu pot fi sigur. Quote
totti93 Posted June 23, 2012 Report Posted June 23, 2012 (edited) In poza se vede o eroare MySQL.Sunt 100% sigur ca e fake, deoarece Google nu foloseste MySQL, ci Bigtable.BigTable - Wikipedia, the free encyclopediaL.E.: Acela nu e File Discosure. Browserul interpreteaza acel `../` ca un director in sus.Dovada:totti93@totti93-MS-7255:~$ curl http://maps.google.com/ads/displaynetwork/adtypes/xxxxx/../../../../maps/ms <title>Error 404 (Not Found)!!1</title> <p>The requested URL <code>/ads/displaynetwork/adtypes/xxxxx/../../../../maps/ms</code> was not found on this server. <ins>That’s all we know.</ins>Mai sus am luat doar partea importanta a raspunsului.totti93@totti93-MS-7255:~$ curl http://maps.google.com/maps/ms{errorText:"Unable to contact server."}Deci se observa ca nu e File Disclosure.Ca test, puteti verifica asta:https://rstcenter.com/forum/../js/feed_menu.jsSper ca v-am convins ca e FAKE. Edited June 23, 2012 by totti93 Quote