GHDB « Hackers For Charity

GHDB

GHDB

Google Search: “Warning:” “Cannot execute a blank command in”

rgod rates this entry 8 out of 10.
Submitted: 2005-09-11 00:00:00
Added by: rgod
Hits: 3480
Score: 8

“Warning: passthru(): Cannot execute a blank command in” “Warning: system(): Cannot execute a blank command in” “Warning: exec(): Cannot execute a blank command in” generally: “Warning:” “Cannot execute a blank command in” this a php error message, essentially it shows hacked pages links where someone leaved a backdoor and the page has error_reporting not set to 0… you can execute shell commands simply appending a var, guessing variable name, usually ‘cmd’ or ‘command’ or something else, example: http://[target]/[path]/somescript.php?cmd=cat%20/etc/passwd


Comments:

2005-10-24 14:16:54 (LogicHeLL): I think the above example should maybe be toned down a bit… very easy.


5 Responses to “GHDB”

  1. Jack says:

    Does GHDB still updates for now?

  2. Johnny says:

    The GHDB is alive and well, updated through the ExploitDB: http://www.exploit-db.com/google-dorks.

  3. The Artist says:

    Hi Johnny,been a while since I’ve came last. Aren’t you gonna update this website anymore???

  4. Johnny says:

    The GHDB is not updated and lives with the exploitdb: http://http://www.exploit-db.com. Please check out the awesome folks at Offensive Security as well: http://www.offensive-security.com!

  5. Velmurugan says:

    Is any offline view-able resources is available of this product ?

Leave a Reply