Search found 16 matches

Go to advanced search

by geone
Fri Apr 08, 2011 11:12 pm
Forum: Issues
Topic: png, jpg bypass, for injection shell that can be used from rfi injection's
Replies: 11
Views: 5438
 
Jump to post

png, jpg bypass, for injection shell that can be used from rfi injection's

what i am uploading is a file.txt with extension file.txt.jpg, and it gets accepted, if you download the image in the url, you will get c100 shell in plain text.
in this url http://s3.amazonaws.com/satisfaction-...

it's were all your images get uploaded.

by geone
Fri Apr 08, 2011 11:09 pm
Forum: Issues
Topic: png, jpg bypass, for injection shell that can be used from rfi injection's
Replies: 11
Views: 5438
 
Jump to post

png, jpg bypass, for injection shell that can be used from rfi injection's

the image does not appear, but its upload to your could server in amazon
http://s3.amazonaws.com/satisfaction-...

by geone
Fri Apr 08, 2011 11:02 pm
Forum: Issues
Topic: png, jpg bypass, for injection shell that can be used from rfi injection's
Replies: 11
Views: 5438
 
Jump to post

png, jpg bypass, for injection shell that can be used from rfi injection's

a href="alert(1);" rel="nofollow"fdsfsfdsImage/a

by geone
Fri Apr 08, 2011 10:35 pm
Forum: Issues
Topic: png, jpg bypass, for injection shell that can be used from rfi injection's
Replies: 11
Views: 5438
 
Jump to post

png, jpg bypass, for injection shell that can be used from rfi injection's

a href="http://" rel="nofollow""[img]http://[/img]" alt="" /a

by geone
Fri Apr 08, 2011 10:34 pm
Forum: Issues
Topic: png, jpg bypass, for injection shell that can be used from rfi injection's
Replies: 11
Views: 5438
 
Jump to post

png, jpg bypass, for injection shell that can be used from rfi injection's

a href="http://" rel="nofollow""[img]http://[/img]" alt="" /a

by geone
Fri Apr 08, 2011 10:32 pm
Forum: Issues
Topic: png, jpg bypass, for injection shell that can be used from rfi injection's
Replies: 11
Views: 5438
 
Jump to post

png, jpg bypass, for injection shell that can be used from rfi injection's

Hi, found a bug the message system, the place were you guys can had a image, supposelly, you can only had png, jpg, but well, i bypassed that with somefile.php.jpg meaning the file can be used has an injection for php shells, in other website's. example url: http://s3.amazonaws.com/satisfaction-... ...
by geone
Fri Apr 08, 2011 10:26 pm
Forum: Issues
Topic: tutorial for beginners
Replies: 19
Views: 4505
 
Jump to post

tutorial for beginners

there's no need for tutorials, its very, very basic :)
i like that, keep it simple, and easy to deal with.

Go to advanced search