Lucene search

K
myhack58佚名MYHACK58:62201234382
HistoryJul 20, 2012 - 12:00 a.m.

Hair red highlight personal website management system v1. 0. 0 to be implanted back door+injection+background holding Station-vulnerability warning-the black bar safety net

2012-07-2000:00:00
佚名
www.myhack58.com
6

Author: invincible gold record administration

Affected version: hair is red and bright personal website management system v1. 0. 0
Download: http://down.chinaz.com/soft/30614.htm

First talk about this system right, the author seems to be very narcissistic, guestbook and everywhere the left is what the big cow, T or the like. And the system preset on the photo what are the authors. However, loaded to force

Always have retribution. I found his website system to leave a back door, but also not excluded is the author’s own leaves, but still very evil.

① The back door address\Edit\EDIT\images\2-13. asa

Location of the place was still very secluded, and actually put in the editor the pictures in the directory.

Chopper Direct Connect. password: baojuhua(爆菊花⊙﹏⊙‖∣)

!

③ Editor Version
Background landing address/Edit/Edit/login. asp
Default password: admin
Seemingly did not find the database, and later looking for it found the password is saved directly in the editor configuration file inside the
Profile address:\Edit\asp\config. asp

The following is simple, add a style sheet, the latter as usual…

l I to simply add a keyword and the test site

Keywords: inurl:Jscode/ShowJscode. asp? id=

Test website: http://www.ystcanyin.cn//Edit/EDIT/images/2-13.asa