Upload Shell on phpMyAdmin 08-04-2011, 02:23 AM
#1
Greetings all ....
tupid:
for those who already know this trick, i am sorry ...
there may be some colleagues - colleagues who do not know ...
PhpMyAdmin should be protected with a password, but still there are some web leave the default (no password), n we can use ...
Here I will show you how to upload shell on the localhost
we will create a form called form.php n upload a file called upload.php that allows you to upload a shell we will ....
First we must know the path of its document root
![[Image: Screenshot-3.png]](http://3.bp.blogspot.com/_leyCi9B-OPY/SkwPgrkmgwI/AAAAAAAAAC0/nXMpVfr6ua4/s400/Screenshot-3.png)
then we go into phpmyadmin to create a database
![[Image: Screenshot-4.png]](http://1.bp.blogspot.com/_leyCi9B-OPY/SkwQBAm2d2I/AAAAAAAAAC8/yVgw_cu5U6o/s400/Screenshot-4.png)
the picture above we create a database called the shell in the text box "Create new database". After that, select the database called the shell n select the SQL tab, and enter the SQL Comment. Command below will create a table called the form and will create a file called form.php on DOCUMENT ROOT, in which the file will contain the html codes.
![[Image: Screenshot-5.png]](http://4.bp.blogspot.com/_leyCi9B-OPY/SkwQa4omo2I/AAAAAAAAADE/sgXKUBVOrsQ/s400/Screenshot-5.png)
and if no errors will successfully create a file called form.php in the DOCUMENT ROOT
![[Image: Screenshot-6.png]](http://2.bp.blogspot.com/_leyCi9B-OPY/SkwQupoNgwI/AAAAAAAAADM/LHdIOBrBCNg/s400/Screenshot-6.png)
Once we make these forms, then we must create a file uploader ....
Command below will create a table called upload and will create a file called upload.php in the DOCUMENT ROOT, in which the file will contain the form php codes
![[Image: Screenshot-7.png]](http://2.bp.blogspot.com/_leyCi9B-OPY/SkwRKhhhp7I/AAAAAAAAADU/JIRFhhlfdLg/s400/Screenshot-7.png)
and if no errors will successfully create a file called upload.php in the DOCUMENT ROOT
![[Image: Screenshot-8.png]](http://2.bp.blogspot.com/_leyCi9B-OPY/SkwRbmrxg1I/AAAAAAAAADc/QLSHjuymCdY/s400/Screenshot-8.png)
After sekses, we lived was called form.php file there DOCUMENT ROOT, and the example is http://localhost/form.php
![[Image: Screenshot-9.png]](http://4.bp.blogspot.com/_leyCi9B-OPY/SkwRt83GjUI/AAAAAAAAADk/RC2oT8Q9b8I/s400/Screenshot-9.png)
We live to upload a shell to be placed on the web, for example, I will upload a shell, and if successful, would bring a blank page and the URL that points to a file called "upload.php". on my localhost pointing to http://localhost/upload.php
![[Image: Screenshot-10.png]](http://4.bp.blogspot.com/_leyCi9B-OPY/SkwR7ISJJDI/AAAAAAAAADs/prXXrR2ZMCY/s400/Screenshot-10.png)
This is an example of fruitful shell uplaod to my localhost server ..
![[Image: Screenshot-11.png]](http://4.bp.blogspot.com/_leyCi9B-OPY/SkwSNafwftI/AAAAAAAAAD0/5o6u5jBLsYw/s400/Screenshot-11.png)
Okey guys... youll propably has been seen this tutorials on many place, but i should give a greatest thanks for the main reference source
Reference :
- Security hacking
- Hacker Articles
tupid:for those who already know this trick, i am sorry ...
there may be some colleagues - colleagues who do not know ...
PhpMyAdmin should be protected with a password, but still there are some web leave the default (no password), n we can use ...
Here I will show you how to upload shell on the localhost
we will create a form called form.php n upload a file called upload.php that allows you to upload a shell we will ....
First we must know the path of its document root
![[Image: Screenshot-3.png]](http://3.bp.blogspot.com/_leyCi9B-OPY/SkwPgrkmgwI/AAAAAAAAAC0/nXMpVfr6ua4/s400/Screenshot-3.png)
then we go into phpmyadmin to create a database
![[Image: Screenshot-4.png]](http://1.bp.blogspot.com/_leyCi9B-OPY/SkwQBAm2d2I/AAAAAAAAAC8/yVgw_cu5U6o/s400/Screenshot-4.png)
the picture above we create a database called the shell in the text box "Create new database". After that, select the database called the shell n select the SQL tab, and enter the SQL Comment. Command below will create a table called the form and will create a file called form.php on DOCUMENT ROOT, in which the file will contain the html codes.
![[Image: Screenshot-5.png]](http://4.bp.blogspot.com/_leyCi9B-OPY/SkwQa4omo2I/AAAAAAAAADE/sgXKUBVOrsQ/s400/Screenshot-5.png)
and if no errors will successfully create a file called form.php in the DOCUMENT ROOT
![[Image: Screenshot-6.png]](http://2.bp.blogspot.com/_leyCi9B-OPY/SkwQupoNgwI/AAAAAAAAADM/LHdIOBrBCNg/s400/Screenshot-6.png)
Once we make these forms, then we must create a file uploader ....
Command below will create a table called upload and will create a file called upload.php in the DOCUMENT ROOT, in which the file will contain the form php codes
![[Image: Screenshot-7.png]](http://2.bp.blogspot.com/_leyCi9B-OPY/SkwRKhhhp7I/AAAAAAAAADU/JIRFhhlfdLg/s400/Screenshot-7.png)
and if no errors will successfully create a file called upload.php in the DOCUMENT ROOT
![[Image: Screenshot-8.png]](http://2.bp.blogspot.com/_leyCi9B-OPY/SkwRbmrxg1I/AAAAAAAAADc/QLSHjuymCdY/s400/Screenshot-8.png)
After sekses, we lived was called form.php file there DOCUMENT ROOT, and the example is http://localhost/form.php
![[Image: Screenshot-9.png]](http://4.bp.blogspot.com/_leyCi9B-OPY/SkwRt83GjUI/AAAAAAAAADk/RC2oT8Q9b8I/s400/Screenshot-9.png)
We live to upload a shell to be placed on the web, for example, I will upload a shell, and if successful, would bring a blank page and the URL that points to a file called "upload.php". on my localhost pointing to http://localhost/upload.php
![[Image: Screenshot-10.png]](http://4.bp.blogspot.com/_leyCi9B-OPY/SkwR7ISJJDI/AAAAAAAAADs/prXXrR2ZMCY/s400/Screenshot-10.png)
This is an example of fruitful shell uplaod to my localhost server ..
![[Image: Screenshot-11.png]](http://4.bp.blogspot.com/_leyCi9B-OPY/SkwSNafwftI/AAAAAAAAAD0/5o6u5jBLsYw/s400/Screenshot-11.png)
Okey guys... youll propably has been seen this tutorials on many place, but i should give a greatest thanks for the main reference source
Reference :
- Security hacking
- Hacker Articles


![[+]](https://sinister.li/images/modern/collapse_collapsed.png)