Forums: Become An Admin On Advanced Guestbook 2.2! - Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Become An Admin On Advanced Guestbook 2.2! Whoops

#1 User is offline   Nick W 

  • Master Sergeant
  • Icon
  • Group: Members
  • Posts: 1,250
  • Joined: 12-August 03

Posted 21 April 2004 - 01:05 PM

Advanced Guestbook 2.2 is a massively deployed guestbook on the Internet due to its ease of use. Users can create a guestbook in a matter of minutes and have no problems whatsoever.

Until now.

Hot from Bugtraq comes this cute little item from JQ:
') OR ('a' = 'a


By using the above code in the "password" field on admin.php for the guestbook a malicious user will be immediately brought to the administration page where they can subsequently edit guest posts, delete posts, and look through logs. All they need to do is enter the above in as a password and click submit, leaving the username blank.

Google search for "Advanced Guestbook 2.2" (including quotes) returned about 158,000 results. Advanced Guestbook 2.2's admin.php file is relatively easy to find. I would suggest administrators of this guestbook immediately change the name of the file or remove it altogether until a patch is released.
0

#2 User is offline   aapje 

  • Staff Sergeant
  • Icon
  • Group: Members
  • Posts: 289
  • Joined: 23-January 04

Posted 21 April 2004 - 01:10 PM

haha works fine!

/edit. you can do stuff by editing the templates =]
0

#3 User is offline   Logan 

  • Specialist
  • Icon
  • Group: Specialist
  • Posts: 1,596
  • Joined: 29-February 04

Posted 21 April 2004 - 02:19 PM

http://www.google.co...uestbook+2.2%22

omg... that is just tooooo simple...
i even told my girlfriend to so she could get an idea of what it's like lol
0

#4 User is offline   qcred11 

  • Master Sergeant
  • Icon
  • Group: Second Lieutenant
  • Posts: 2,544
  • Joined: 25-February 04

Posted 21 April 2004 - 03:18 PM

W-o-W This is cool and pretty simple. I'm gonna try it tonight.
Looks like the programmers made a backdoor for themselves... ;)
0

#5 Guest_AsuKa_*

  • Group: Guests

Posted 21 April 2004 - 06:11 PM

Just checked it out, worked on the first try. Its almost sad how easy it is. Thanks for the info Yorn :D
0

#6 User is offline   ssj4conejo 

  • Sergeant
  • Icon
  • Group: Members
  • Posts: 239
  • Joined: 11-August 03

Posted 21 April 2004 - 08:25 PM

Nice one... i'm surprised n00bs havent asked for what port to scan, or for a compiled version. :D lol.
0

#7 User is offline   x1` 

  • Master Sergeant
  • Icon
  • Group: Members
  • Posts: 409
  • Joined: 15-December 03

Posted 21 April 2004 - 09:11 PM

is there any chance we could like get root of the host of where the files are , pritty limted to this exploit :( cool tho for deleting stuff and then people ask why u delete my post lol
0

#8 User is offline   isaiah 

  • Corporal
  • Icon
  • Group: Members
  • Posts: 199
  • Joined: 12-August 03

Posted 21 April 2004 - 09:58 PM

http://www.google.co...%22+admin%2Ephp

great place to find vuln sites
0

#9 User is offline   Logan 

  • Specialist
  • Icon
  • Group: Specialist
  • Posts: 1,596
  • Joined: 29-February 04

Posted 22 April 2004 - 11:10 AM

Dickybob20, on Apr 22 2004, 05:11 AM, said:

is there any chance we could like get root of the host of where the files are , pritty limted to this exploit :( cool tho for deleting stuff and then people ask why u delete my post lol

all this exploit is good for is JUST the guestbook, not the server
0

#10 User is offline   qcred11 

  • Master Sergeant
  • Icon
  • Group: Second Lieutenant
  • Posts: 2,544
  • Joined: 25-February 04

Posted 22 April 2004 - 04:47 PM

Quote

Advanced Guestbook 2.2's admin.php file is relatively easy to find.

I found a web site with Advanced guest book 2.2, but I didn't find any place where I can use Admin login, until I rered Yorn's first post. Admin.php was really easy to find.
Thannks for the post and explanation.
0

#11 User is offline   icenix 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 91
  • Joined: 05-January 04

Posted 23 April 2004 - 02:49 AM

Quote

Nice one... i'm surprised n00bs havent asked for what port to scan, or for a compiled version. :) lol


i wonder how many people actually know what this is and understand the concepts of SQL Injection....im going through a phase of wondering where the old hackers went and being faced with these new Generation *cough* hackers *cough*

im not pointing the finger at ya ssj ;) just pointing out something on my mind :)
can anyone get the source code of this Guestbook so we can maybe teach these "n00bs" of what an SQL injection is? maybe it would be a good learning experience...

if they can actually be bothered............
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users

  • Share



Our Sponsors:


SwiftLayer Affiliate Web Hosting