<?xml version="1.0" standalone="yes"?>
<?xml-stylesheet type="text/xsl" href="css/rss.xslt"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/"><channel><title>黑面小窝 - 漏洞收集</title><link>http://www.heimian.com/</link><description>关注网络安全！关注黑客技术！关注seo优化！ - </description><generator>RainbowSoft Studio Z-Blog 1.8 Walle Build 100427</generator><language>zh-CN</language><copyright>Copyright Black face WebSite. Some Rights Reserved.</copyright><pubDate>Mon, 06 Sep 2010 01:16:31 +0800</pubDate><item><title>BlueCMS getip()注射漏洞</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/833.html</link><pubDate>Sun, 05 Sep 2010 19:48:16 +0800</pubDate><guid>http://www.heimian.com/post/833.html</guid><description><![CDATA[<p>发布作者：cnryan&nbsp;&nbsp;&nbsp;</p><p>官方地址：<a href="http://www.bluecms.net">www.bluecms.net</a>&nbsp;&nbsp;&nbsp; 漏洞类型：SQL注入</p><p>一、描述<br />BlueCMS是一个地方分类信息门户专用CMS系统。<br />程序在使用getip()函数获取客户端ip时没有严格过滤数据，导致sql注射漏洞。</p><p>二、分析<br />//comment.php<br />...</p>]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/833.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=833</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=833&amp;key=fb8edf1f</trackback:ping></item><item><title>phpcms 2008 sp4 爆路径及任意文件删除漏洞</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/832.html</link><pubDate>Sun, 05 Sep 2010 19:40:11 +0800</pubDate><guid>http://www.heimian.com/post/832.html</guid><description><![CDATA[<p>发布作者：CnCxzSec(衰仔)&nbsp;&nbsp;&nbsp;</p><p>影响版本：phpcms 2008 sp4&nbsp;&nbsp;&nbsp;</p><p>官方地址：<a href="http://www.phpcms.cn">www.phpcms.cn</a>&nbsp;&nbsp;&nbsp;</p><p>漏洞类型：爆路径及任意文件删除</p><p>漏洞描述：某页面下，未作容错处理导致爆路径，同时过滤不严导致恶意攻击者可以删除网站任意文件</p><p>详细说明：corpandresize/config.inc.php中定义：</p><p>...</p>]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/832.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=832</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=832&amp;key=736965b7</trackback:ping></item><item><title>iwebshop0.7.7 0day</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/826.html</link><pubDate>Tue, 31 Aug 2010 19:18:02 +0800</pubDate><guid>http://www.heimian.com/post/826.html</guid><description><![CDATA[<div class="cnt" id="blog_text"><p>author:Luc1f3r<br />blog:<a href="http://hi.baidu.com/luc1f3r_" target="_blank">http://hi.baidu.com/luc1f3r_</a></p><p><br />漏洞出在根目录的auction_list.php,第77行-86行:</p><p>/* 浏览记录 */ <br />$getcookie = get_hisgoods_cookie(); <br />...</p></div>]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/826.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=826</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=826&amp;key=7a859785</trackback:ping></item><item><title>Art2008cms 4.3 的鸡肋漏洞--列目录</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/825.html</link><pubDate>Tue, 31 Aug 2010 01:30:42 +0800</pubDate><guid>http://www.heimian.com/post/825.html</guid><description><![CDATA[<p>FORM <a href="http://www.st999.cn/BLOG">WWW.ST999.CN/BLOG</a></p><p>对于前个3.1版本的cookies欺骗漏洞，<a href="http://www.st999.cn/blog/?action=show&amp;id=315">http://www.st999.cn/blog/?action=show&amp;id=315</a>，本来错误的以为4.1的换成了seesion验证了，结果再次发现，竟然还是cookies验证，只不过是加了个referer验证而已。所以，这个后台欺骗漏洞我也没利用成功，，哪位朋友如果有办法利用的，麻烦到我的blog给我留言下，blog <a href="http://www.st999.cn/blog">http://www.st999.cn/blog</a>！！！</p><p>...</p>]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/825.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=825</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=825&amp;key=d96cdf70</trackback:ping></item><item><title>秀影电影程序VODCMS 6.0.4 bugs</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/822.html</link><pubDate>Mon, 30 Aug 2010 23:35:54 +0800</pubDate><guid>http://www.heimian.com/post/822.html</guid><description><![CDATA[<p><font color="#ff0000">任意删用户，任意改用户密码bug，及其他暴路径bug<br /></font><font color="#0000ff">api/uc.php</font></p><p><font color="#0000ff">$code = $_GET['code'];&nbsp; //code未过滤<br />parse_str(authcode($code, 'DECODE', UC_KEY), $get); //覆盖$get数组,注意它用了自己的加密函数<br />...</font></p>]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/822.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=822</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=822&amp;key=7b2c56ea</trackback:ping></item><item><title>zen cart 1.38a以下 ODAY</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/821.html</link><pubDate>Mon, 30 Aug 2010 23:32:32 +0800</pubDate><guid>http://www.heimian.com/post/821.html</guid><description><![CDATA[<p>&lt;form id=&quot;frmUpload&quot; enctype=&quot;multipart/form-data&quot; action=&quot;http://aus-snowboots.com/editors/fckeditor/editor/filemanager/upload/php/upload.php?Type=Media&quot; method=&quot;post&quot;&gt;<br />Upload a new file:&lt;br&gt;<br />...</p>]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/821.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=821</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=821&amp;key=5f49a721</trackback:ping></item><item><title>创力CMS留言板跨站漏洞</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/817.html</link><pubDate>Thu, 26 Aug 2010 15:23:37 +0800</pubDate><guid>http://www.heimian.com/post/817.html</guid><description><![CDATA[<p>BY:leo108<br /><br />漏洞分析:write.asp&nbsp; &nbsp; reply.asp<br />--------------------------------------------------------------------<br />由于留言标题直接插入更新语句，未进行任何过滤，导致XSS跨站漏洞<br /><br />漏洞利用：<br /><br />首先拥有一个自己可控的网站，然后构造表单：</p><div class="blockcode">...</div>]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/817.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=817</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=817&amp;key=e32a5b18</trackback:ping></item><item><title>NetCms 另一个Oday</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/815.html</link><pubDate>Wed, 25 Aug 2010 23:47:36 +0800</pubDate><guid>http://www.heimian.com/post/815.html</guid><description><![CDATA[<p><strong><font face="黑体" color="#ff0000" size="5">1.注册帐号<br />2.点击修改基本信息，然后点击自定义头像<br /></font></strong><span id="attach_8594" onmouseover="showMenu({'ctrlid':this.id,'pos':'13'})" style="display: none; position: absolute"><strong><font face="黑体" color="#ff0000" size="5"><img src="http://www.heimian.com/upload/2010/8/201008252348353214.gif" border="0" alt="" /></font></strong></span> <img class="zoom" id="aimg_8594" onclick="zoom(this, this.src)" alt="1.jpg" src="http://www.heimian.com/upload/2010/8/201008252348352131.jpg" width="600" unselectable="true" outfunc="null" initialized="true" status="2" file="attachments/month_1008/10082504298288df1d216e9c19.jpg" /></p>...]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/815.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=815</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=815&amp;key=641d1b09</trackback:ping></item><item><title>NetCms Oday</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/814.html</link><pubDate>Wed, 25 Aug 2010 23:35:52 +0800</pubDate><guid>http://www.heimian.com/post/814.html</guid><description><![CDATA[<p>首先，我百度 &ldquo;NetCms网站管理系统&rdquo;，然后顺手找了个网站。<br />然后进去， /user/login.aspx&nbsp; &nbsp;&nbsp;&nbsp;，点注册。</p><p>点击发表文章。<br /><span id="attach_8580" onmouseover="showMenu({'ctrlid':this.id,'pos':'13'})" style="display: none; position: absolute"><img src="http://www.heimian.com/upload/2010/8/201008252337470154.gif" border="0" alt="" /></span> <img id="aimg_8580" alt="3.png" src="http://www.heimian.com/upload/2010/8/201008252337473134.png" width="595" unselectable="true" outfunc="null" initialized="true" status="2" file="attachments/month_1008/100824190775a88489b87552f7.png" /></p>...]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/814.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=814</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=814&amp;key=44f7956b</trackback:ping></item><item><title>凹丫丫新闻发布系统ACC版SQL版最新通杀注入0day</title><author>3768110@qq.com (admin)</author><link>http://www.heimian.com/post/811.html</link><pubDate>Mon, 23 Aug 2010 05:32:36 +0800</pubDate><guid>http://www.heimian.com/post/811.html</guid><description><![CDATA[<p><font size="2">作者:enjoyhack</font></p><p>系统主要漏洞是cookie注入，总的有两处，我们先来看看防注入代码：<br /><br />&lt;% <br /><br />Dim Query_Badword,Form_Badword,i,Err_Message,Err_Web,name<br /><br />'------定义部份&nbsp;&nbsp;头----------------------------------------------------------------------<br />...</p>]]></description><category>漏洞收集</category><comments>http://www.heimian.com/post/811.html#comment</comments><wfw:comment>http://www.heimian.com/</wfw:comment><wfw:commentRss>http://www.heimian.com/feed.asp?cmt=811</wfw:commentRss><trackback:ping>http://www.heimian.com/cmd.asp?act=tb&amp;id=811&amp;key=84527fd1</trackback:ping></item></channel></rss>
