
22 changes to exploits/shellcodes Quick N Easy Web Server 3.3.8 - Denial of Service (PoC) Go SSH servers 0.0.2 - Denial of Service (PoC) Android Binder - Use-After-Free (Metasploit) Diamorphine Rootkit - Signal Privilege Escalation (Metasploit) Apache James Server 2.3.2 - Insecure User Creation Arbitrary File Write (Metasploit) Avaya IP Office Application Server 11.0.0.0 - Reflective Cross-Site Scripting ESCAM QD-900 WIFI HD Camera - Remote Configuration Disclosure Real Web Pentesting Tutorial Step by Step - [Persian] AMSS++ v 4.31 - 'id' SQL Injection SecuSTATION IPCAM-130 HD Camera - Remote Configuration Disclosure CandidATS 2.1.0 - Cross-Site Request Forgery (Add Admin) AMSS++ 4.7 - Backdoor Admin Account SecuSTATION SC-831 HD Camera - Remote Configuration Disclosure ATutor 2.2.4 - 'id' SQL Injection I6032B-P POE 2.0MP Outdoor Camera - Remote Configuration Disclosure ManageEngine EventLog Analyzer 10.0 - Information Disclosure eLection 2.0 - 'id' SQL Injection DotNetNuke 9.5 - Persistent Cross-Site Scripting DotNetNuke 9.5 - File Upload Restrictions Bypass Aptina AR0130 960P 1.3MP Camera - Remote Configuration Disclosure Cacti 1.2.8 - Remote Code Execution Windows\x86 - Null-Free WinExec Calc.exe Shellcode (195 bytes)
23 lines
No EOL
1.3 KiB
Text
23 lines
No EOL
1.3 KiB
Text
# Title: AMSS++ 4.7 - Backdoor Admin Account
|
|
# Author: indoushka
|
|
# Date: 2020-02-23
|
|
# Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 65.0(32-bit)
|
|
# Vendor : http://amssplus.ubn4.go.th/amssplus_download/amssplus_4_31_install.rar
|
|
# Dork : แนะนำให้ใช้บราวเซอร์ Google Chrome "AMSS++"
|
|
====================================================================================================================================
|
|
|
|
poc :
|
|
|
|
|
|
[+] Dorking İn Google Or Other Search Enggine.
|
|
|
|
[+] Use Login : admin & 1234
|
|
|
|
[+] http://127.0.0.1/innoobec/index.php
|
|
|
|
|
|
Greetings to :=========================================================================================================================
|
|
|
|
|
jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * shadow_00715 * LiquidWorm* |
|
|
|
|
|
======================================================================================================================================= |