File27.com hackThis is a featured page

I have come across to this site and can't stop my self to laugh at their security.

Site Name : file27.com - File Uploading Site


Security Bug Area ; Login in Their admin panel easily

Guide :

Go to file27.com/admin.php and register fake ID ( do not use your general ID and Password which you are using normally )

Once you registered then Login in your member area from file27.com/admin.php

Now get Firefox's Cookie Editor https://addons.mozilla.org/firefox/addon/573

If you already have cookie editor then Open it and Search file27's cookies

find the cookie named is_admin and replace Put 1 in its Content Box

Now again visit that page file27.com/admin.php ( Do not refresh but visit it again )


Now you are in Admin Panel of that site

Select User Management from Drop down and view ID and Pass of all members of that site


( From my experience most of user choose same password for their all accounts like email, payment transation etc so good luck with you )



I have mailed to this site's owner before some days but he have not fixed his bug, I am security Auditor not hacker and I am no responsible for any damage

Enter at your own risk!

Thanks to spygadgets,

Credit: spygadgets.page.tl-sid



sanjivnidamboor
sanjivnidamboor
Latest page update: made by sanjivnidamboor , Nov 1 2007, 8:51 AM EDT (about this update About This Update sanjivnidamboor Edited by sanjivnidamboor

4 words added
3 words deleted

view changes

- complete history)
More Info: links to this page

Anonymous  (Get credit for your thread)


There are no threads for this page.  Be the first to start a new thread.

Related Content

  (what's this?Related ContentThanks to keyword tags, links to related pages and threads are added to the bottom of your pages. Up to 15 links are shown, determined by matching tags and by how recently the content was updated; keeping the most current at the top. Share your feedback on Wetpaint Central.)