![]() |
|
IP.Board forum hack? - Printable Version +- Sinisterly (https://sinister.li) +-- Forum: Hacking (https://sinister.li/Forum-Hacking) +--- Forum: Website & Server Hacking (https://sinister.li/Forum-Website-Server-Hacking) +--- Thread: IP.Board forum hack? (/Thread-IP-Board-forum-hack) |
IP.Board forum hack? - adriancs35 - 04-16-2013 Hello, im new here :blackhat: , this is my 1st topic, and I want to know if a IP.Board IPS forum can be hacked, if i found a vulnerability ? Re: IP.Board forum hack? - Oni - 04-16-2013 Well, if you found a vulnerability, it is highly likely it can be exploited. There are very few vulnerabilities on IPB from what I have heard. RE: IP.Board forum hack? - adriancs35 - 04-16-2013 Yes, i think i have the vulnerablility but im not sure if it is one or not and im not sure how to hack it..... ERROR: SQL error: Can't connect to local MySQL server through socket '/var/lib/mysql/mysql.sock' (2) SQL error code: 2002 Date: Tuesday 16th April 2013 07:39:42 PM ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Date: Tue, 16 Apr 2013 19:39:42 +0000 Error: 2002 - Can't connect to local MySQL server through socket '/var/lib/mysql/mysql.sock' (2) IP Address: 82.77.103.184 - /index.php?app=core&module=global§ion=login&do=process ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- .--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------. | File | Function | Line No. | |----------------------------------------------------------------------------+-------------------------------------------------------------------------------+-------------------| | admin/sources/handlers/han_login.php | [login_external].authenticate | 684 | '----------------------------------------------------------------------------+-------------------------------------------------------------------------------+-------------------' | admin/sources/handlers/han_login.php | [han_login].loginAuthenticate | 340 | '----------------------------------------------------------------------------+-------------------------------------------------------------------------------+-------------------' | admin/applications/core/modules_public/global/login.php | [han_login].verifyLogin | 445 | '----------------------------------------------------------------------------+-------------------------------------------------------------------------------+-------------------' | admin/applications/core/modules_public/global/login.php | [public_core_global_login].doLogin | 107 | '----------------------------------------------------------------------------+-------------------------------------------------------------------------------+-------------------' | admin/sources/base/ipsController.php | [public_core_global_login].doExecute | 306 | '----------------------------------------------------------------------------+-------------------------------------------------------------------------------+-------------------' RE: IP.Board forum hack? - i0xIllusi0n - 04-17-2013 Errors are different from vulnerabilities. That's an error. Although IPBoard still can be exploited through vulnerabilities if you find them. I'm not sure if they're any out there. Google it. Re: IP.Board forum hack? - Oni - 04-18-2013 I don't believe that's a vulnerability. SQL errors happen all the time. It doesn't necessarily mean that the page is vulnerable. Error-based injection exists, but I doubt that is possible with what you found. RE: IP.Board forum hack? - Unmasked - 05-14-2013 What version is it? I have a private 0day from way back on IPB 3.2x that has never been patched as only me and a few friends have it. |