APPEAL

>>All my tricks are only for educational purpose,please don't misuse it at others and at yours enimies too.
>>I request all my users to comment always.Your better commentment encourage me and gives the power to discover new tricks.So don't be a silent users.

Wednesday 22 June 2011

HACK WEBSITE USING DNN [DOT NET NUKE] EXPLOIT

Hack Website Using DNN
[Dot Net Nuke] Exploit
Hack Website Using DNN
[Dot Net Nuke] Exploit
SOURCE FREHACKING.NET
Note:- Only for educational
purpose
Using google DORK try to find
the vulnerable website.
inurl:"/portals/0"
You can also modify this google
dork according to your need &
requirement
I have found these 2 website
vulnerable to this attack:
http://www.wittur.se/
http://www.bsd405.org/
n00bs can also try both of
these websites for testing
purpose.
Open the home page and check
any image which is located in
/
portals/0/
Check the location of the image.
It should be located in
/
portals/0/
For e.g. in case of http://
www.wittur.se ..the image is
located at location- http*://
www.wittur.se/Portals/0/
SHM.jpg*
Waaooo it means this website is
vulnerable and we can change
the front page pic. Now the
current image name is SHM.jpg.
Rename the new image as
SHM.jpg which you want to
upload as a proof of you owned
the system.
cont....
Now here is the exploit
Providers/
HtmlEditorProviders/Fck/
fcklinkgallery.aspxHOW TO
RUN ?
Simply copy paste it as shown
below:
www.site.com/Providers/
HtmlEditorProviders/Fck/
fcklinkgallery.aspx
You will see the portal where it
will ask you to upload. Select
the third option File ( A File On
Your Site


After selecting the third option,
replace the URL bar with below
script
For script click here http://
tinypaste.com/af8b9
After running this JAVA script,
you will see the option
for
Upload Selected File Now
select you image file which
you have renamed as
SHM.jpg & upload here. Go
to main page and
refresh...BINGGOOOOOOOOOOOO
you have hacked the
website.

No comments:

Post a Comment