Author Topic: vBulletin XSS Demonstration with Session Hijacking  (Read 559 times)

Conflict

  • g0d i5 just a stat1st1c
  • Senior Member
  • ****
  • Posts: 475
vBulletin XSS Demonstration with Session Hijacking
« on: June 12, 2006, 05:14:04 PM »
Protoze jede forum na vBulletin, prislo mi vhodny dat sem tohle video.
http://www.milw0rm.com/video/watch.php?id=30

chapu to dobre, ze se takhle daji ziskat prava na foru?

btw: dobra hudba

CZerezpiCZkin

  • Junior Member
  • ***
  • Posts: 181
Re: vBulletin XSS Demonstration with Session Hijacking
« Reply #1 on: June 12, 2006, 06:08:51 PM »
To som ani netusil, ze by mohlo byt az tak jednoduche prihlasovat sa na fora takymto sposobom...
CZpCZ

Master

  • [t4C]newbie child
  • VIP
  • *****
  • Posts: 615
Re: vBulletin XSS Demonstration with Session Hijacking
« Reply #2 on: June 12, 2006, 08:32:30 PM »
Jo jde to,ja videl podobny veci na phpbb atd.

llAmElliK

  • [TiME4CRiME]
  • Administrator
  • VIP
  • *****
  • Posts: 960
Re: vBulletin XSS Demonstration with Session Hijacking
« Reply #3 on: June 12, 2006, 08:39:19 PM »
Quote from: Master
Jo jde to,ja videl podobny veci na phpbb atd.

Coz phpbb je co se tyce "bezpecnosti"kapitola sama pro sebe - at je to jak je vB patri v teto oblasti mezi spicky - ovsem oproti phpbb se musi malinko vic studovat nastaveni..
Vim o cem mluvim - testoval jsem "pruchodnost"obou baordu najeky ten patek - na phpbb se nekomu dokonce tenkrat podarilo nastavit si admin prava....a mne je zrusit..:confused:
TiME AND CRiME ARE ETERNAL-REVERSE ENGINEERiNG iS MODERN PHiLOSOPHY AND iSN'T CRiME
[TiME4CRiME]

Master

  • [t4C]newbie child
  • VIP
  • *****
  • Posts: 615
Re: vBulletin XSS Demonstration with Session Hijacking
« Reply #4 on: June 13, 2006, 07:30:27 AM »
Songy:Mortal kombat 1 sountrack,přesněji neřeknu
Druha skladba - Prodigy - VooDoo people(Pendulum remix)