GHDB « Hackers For Charity

GHDB

GHDB

Google Search: Powered.by:.vBulletin.Version …3.0.6

sfd rates this entry 6 out of 10.
Submitted: 2005-03-20 15:43:33
Added by: sfd
Hits: 3983
Score: 6

vBulletin is reported prone to an arbitrary PHP script code execution vulnerability. The issue is reported to exist due to a lack of sufficient input sanitization performed on user-supplied data before this data is included in a dynamically generated scripthttp://www.securityfocus.com/bid/12622/info/


Comments:

2005-03-21 21:02:14 (stevenrh): Results 1 – 10 of about 4,170,000 for Powered.by:.vBulletin.Version …3.0.6. (0.17 seconds) I’d hate to see what happens when someone can plug some code in there…
…just another reason that perl/cgi may be a better path to follow (for the time being)


2005-03-28 10:33:07 (algorion): Has anyone been able to work with this yet? i really need to get some SQL to go into this but i dont know the vbulletin system at all.


5 Responses to “GHDB”

  1. Jack says:

    Does GHDB still updates for now?

  2. Johnny says:

    The GHDB is alive and well, updated through the ExploitDB: http://www.exploit-db.com/google-dorks.

  3. The Artist says:

    Hi Johnny,been a while since I’ve came last. Aren’t you gonna update this website anymore???

  4. Johnny says:

    The GHDB is not updated and lives with the exploitdb: http://http://www.exploit-db.com. Please check out the awesome folks at Offensive Security as well: http://www.offensive-security.com!

  5. Velmurugan says:

    Is any offline view-able resources is available of this product ?

Leave a Reply