MAIN PAGE   FORUM   ABOUT US  
 
 
 ANTICHAT.RU
 VIDEO.ANTICHAT.RU
 FORUM
 FAQ
 SEND VIDEO
 INFORMER (ru)
 КОНКУРС (ru)
 
 VIDEO FILES NOT APPROVED
 
Video search

RSS
 
Сategory
SQL INJECTION [61]
XSS [45]
PHP-INJECTION [32]
OTHER [129]
ANTIHACK [11]
VIDEO-WINNER [6]
 
Most active authors
Kez [20]
Zfailure [17]
Zadoxlik [8]
B00zy_c0d3r [6]
Diemad [6]
0x0c0de [5]
Shankar [5]
Nitrex [5]
Micro [5]
Greenbear [5]
(other)
 

 


Video search

WebCodePortalSystem v.4.3.1 Shell upload [08.05.2008. 14:04:25] 4.63 Mb
Shell upload in CMS WebCodePortalSystem v.4.3.1
screenshot
Author: Grey comment [2] downloaded [2048]
WebCodePortalSystem v.4.2.2 Creating admin with XSS [05.02.2008. 00:10:00] 3.77 Mb
For many XSS is just a way to steal a cookie, and nothing else, but this is not the case, in the post of:
https://forum.antichat.ru/showpost.php?p=584229&postcount=17 Grey described the automation of this process - that is, stolen cookies will be used by scripts (you will not have to climb yourself and change your cookies on stolen) to send necessary for the creation of a new administrator, data. To have a knowledge engine and the "simple" XSS could lead to quite serious implications in terms of security.
This video, I not only want to show I have described in the post of actions, but also show that XSS is still serious vulnerability.
screenshot
Author: Grey comment [6] downloaded [3557]
Hack WebCodePortalSystem <= v. 3.8.3.1 [22.12.2007. 21:12:40] 2.97 Mb
Video to https://forum.antichat.ru/showpost.php?p=528125&postcount=2 article
screenshot
Author: Grey comment [0] downloaded [2482]





 

 © ANTICHAT.RU