<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
	<channel>
		<title><![CDATA[Latest posts for the topic "Advanced Guestbook 2.2 -- SQL Injection Exploit"]]></title>
		<link>https://proxy2.de/forum/posts/list/2.php</link>
		<description><![CDATA[Latest messages posted in the topic "Advanced Guestbook 2.2 -- SQL Injection Exploit"]]></description>
		<generator>JForum - http://www.jforum.net</generator>
			<item>
				<title>Advanced Guestbook 2.2 -- SQL Injection Exploit</title>
				<description><![CDATA[ I found out that Advanced Guestbook 2.2 appears vulnerable to SQL Injection granting the attacker administrator access. The attack is very simple and consists of inputting a special password string leaving the username entry blank: <br /> <br /> So I suggest you upgrade to the latest version.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/8043.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/8043.php</link>
				<pubDate><![CDATA[Fri, 23 Apr 2004 14:12:41]]> GMT</pubDate>
				<author><![CDATA[ Jam'n]]></author>
			</item>
			<item>
				<title>Guestbook Hack</title>
				<description><![CDATA[ This guestbook is very hackable. Yesterday as a matter of fact, some guy in poland hacked the guestbook which gave him the ability to change and remove files off my webserver. He was a persistant little bugger. He made my day very interesting. The guys name is Andrzej Bilski &lt;3tc69@wp.pl&gt; from <a class="snap_shots" href="http://republika.pl." target="_blank" rel="nofollow">http://republika.pl.</a> So just watch out, it'll make your day very interesting.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/8136.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/8136.php</link>
				<pubDate><![CDATA[Tue, 27 Apr 2004 20:01:33]]> GMT</pubDate>
				<author><![CDATA[ xavior93]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ How exploitable is the latest version -  2.3.1?]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/8254.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/8254.php</link>
				<pubDate><![CDATA[Fri, 7 May 2004 21:05:00]]> GMT</pubDate>
				<author><![CDATA[ fireman949]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ No kown exploits yet (as far as I know).]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/8275.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/8275.php</link>
				<pubDate><![CDATA[Mon, 10 May 2004 08:08:29]]> GMT</pubDate>
				<author><![CDATA[ Jam'n]]></author>
			</item>
			<item>
				<title>exploitable 2.3.1 ??</title>
				<description><![CDATA[ hello,<br /> <br /> hmh ... i'm not sure if the version 2.3.1 isn't open for the exploit with the empty username and the password ') OR ('a' = 'a <br /> <br /> well ... i mean even <a class="snap_shots" href="http://proxy2.de/guestbook/admin.php" target="_blank" rel="nofollow">http://proxy2.de/guestbook/admin.php</a> is secured with a .htaccess file !! there must be a reason for it, isn't it ??<br /> <br /> i could gain access on SOME guestbooks on the internet runing the version 2.3.1 .... but this wasn't possible EVERY time ! sometimes the exploit just worked and other times it doesn't !! strange behaviour  <img src="https://proxy2.de/forum//images/smilies/136dd33cba83140c7ce38db096d05aed.gif" /> <br /> <br /> anyway ... developed a security patch for this exploit a couple of days ago and just thought it might be worth posting here and let other people know about  <img src="https://proxy2.de/forum//images/smilies/283a16da79f3aa23fe1025c96295f04f.gif" /> <br /> <br /> sooo ...check out this link =&gt; <a class="snap_shots" href="http://www.beckspaced.com/gb_fix/index.php" target="_blank" rel="nofollow">http://www.beckspaced.com/gb_fix/index.php</a><br /> <br /> hope this helps a bit  <img src="https://proxy2.de/forum//images/smilies/3b63d1616c5dfcf29f8a7a031aaa7cad.gif" /> <br /> <br /> all the best<br /> becki]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9064.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9064.php</link>
				<pubDate><![CDATA[Fri, 9 Jul 2004 20:32:13]]> GMT</pubDate>
				<author><![CDATA[ becki]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ So waht you are saying is just double password and login protect it. Correct??? Also does your patch work on version 2.2???]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9068.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9068.php</link>
				<pubDate><![CDATA[Sat, 10 Jul 2004 01:40:15]]> GMT</pubDate>
				<author><![CDATA[ JTD]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ so what am I trying to say ?? everything quite easy  <img src="https://proxy2.de/forum//images/smilies/283a16da79f3aa23fe1025c96295f04f.gif" />  first go and read all the stuff written at <a class="snap_shots" href="http://www.beckspaced.com/gb_fix/index.php" target="_blank" rel="nofollow">http://www.beckspaced.com/gb_fix/index.php</a> ! there's all the info you should need  <img src="https://proxy2.de/forum//images/smilies/385970365b8ed7503b4294502a458efa.gif" /> <br /> <br /> then ... you don't need to double protect your guestbook ! just decide for which you want to go &gt;<br /> <br /> 1.) protect via .htaccess file<br /> 2.) install the patch !<br /> <br /> either one of those should work fine  <img src="https://proxy2.de/forum//images/smilies/283a16da79f3aa23fe1025c96295f04f.gif" /> <br /> <br /> about the version i'm not sure  <img src="https://proxy2.de/forum//images/smilies/499fd50bc713bfcdf2ab5a23c00c2d62.gif" />  i just downloaded the latest version from <a class="snap_shots" href="http://proxy2.de" target="_blank" rel="nofollow">http://proxy2.de</a> and therefore i suppose it's version 2.3.1 !!<br /> <br /> as i don't have any older version like 2.2 i don't recmommend to install the patch on a 2.2 version ! better upgrade to 2.3.1 and then install the patch !<br /> <br /> or pass me the old 2.2. version so i can have a look on how to secure this thing  <img src="https://proxy2.de/forum//images/smilies/283a16da79f3aa23fe1025c96295f04f.gif" /> <br /> <br /> hope this helps<br /> becki]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9071.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9071.php</link>
				<pubDate><![CDATA[Sat, 10 Jul 2004 11:21:31]]> GMT</pubDate>
				<author><![CDATA[ becki]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Seems the Exploit was posible thru a bug in the php version you use.<br /> So if your hosting company has the latest version than the bug doesn't work.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9073.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9073.php</link>
				<pubDate><![CDATA[Sat, 10 Jul 2004 14:30:21]]> GMT</pubDate>
				<author><![CDATA[ Jam'n]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I've just done a search on Google for "advanced guestbook 2.2" and every site i found I could log in on. Some had been hacked so I fixed them and I cleaned up the spam in others. I am running 2.3.1 on PHP 4.3.4 so I am safe as this seems to have fixed the magic quotes problem. I would highly recommend updating to 2.3.1 and hassling your webhost about updating their PHP version. In the meantime I suggest either protecting your admin.php with .htaccess as has been suggested or simply renaming it and removing the link to it from the guestbook. After all if they can't find it they can't exploit it.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9074.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9074.php</link>
				<pubDate><![CDATA[Sat, 10 Jul 2004 17:46:42]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ well ... also went on a search on google.com a while ago and searched for guestbooks open for the exploit !<br /> then i also found some version 2.3.1 guestbooks runing PHP version up to 4.3.7 which were still open for the exploit !!!<br /> <br /> also posted a bug report on <a class="snap_shots" href="http://bugs.php.net/bug.php?id=28906" target="_blank" rel="nofollow">http://bugs.php.net/bug.php?id=28906</a>  but so far this report is still OPEN !! for weeks now  <img src="https://proxy2.de/forum//images/smilies/136dd33cba83140c7ce38db096d05aed.gif" /> <br /> <br /> so .. protect your admin.php file with .htaccess file ..... or rename it ... not a good solution .... or install the patch which can be found at <a class="snap_shots" href="http://www.beckspaced.com/gb_fix/index.php" target="_blank" rel="nofollow">http://www.beckspaced.com/gb_fix/index.php</a><br /> <br /> in the meantime .. have fun &amp; enjoy life to its best  <img src="https://proxy2.de/forum//images/smilies/69934afc394145350659cd7add244ca9.gif" /> <br /> <br /> becki]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9075.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9075.php</link>
				<pubDate><![CDATA[Sat, 10 Jul 2004 18:07:02]]> GMT</pubDate>
				<author><![CDATA[ becki]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Hmmm I don't have a copy of 2.2 but I wonder if we couldn't put in a simple <br /> <br /> [code]if &#40;$password = &quot;'&#41; OR &#40;'a' = 'a&quot;&#41; die &#40;'Nice try ;-&#41;'&#41;;[/code]]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9076.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9076.php</link>
				<pubDate><![CDATA[Sat, 10 Jul 2004 20:15:15]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ or more likely look for "') OR ('a' = 'a" in the supplied password or trim($password)]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9077.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9077.php</link>
				<pubDate><![CDATA[Sat, 10 Jul 2004 20:21:16]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ <img src="https://proxy2.de/forum//images/smilies/908627bbe5e9f6a080977db8c365caff.gif" />  I have just set my guestbook up to post a nice message if anyone tries to use the exploit password  <img src="https://proxy2.de/forum//images/smilies/97ada74b88049a6d50a6ed40898a03d7.gif" />  it also logs their details.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9078.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9078.php</link>
				<pubDate><![CDATA[Sat, 10 Jul 2004 21:14:46]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Hi guys, was reading through some of these hacking posts....<br /> <br /> Mine was just hacked as well:<br /> <br /> <a class="snap_shots" href="http://www.bluetongueskinks.net/guestbook" target="_blank" rel="nofollow">http://www.bluetongueskinks.net/guestbook</a><br /> <br /> Someone told me to just go with dreambook... Or should I upgrade, and the problem will be solved?  What would you guys suggest, I'm not even sure how to upgrade.<br /> <br /> Thanks a lot for any help... I'm sure you get tired of the same questions... Sorry..  <img src="https://proxy2.de/forum//images/smilies/2786c5c8e1a8be796fb2f726cca5a0fe.gif" />]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9798.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9798.php</link>
				<pubDate><![CDATA[Thu, 12 Aug 2004 04:16:05]]> GMT</pubDate>
				<author><![CDATA[ Ktoadd]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Trevor has supplied the info here:<br /> <br /> <a class="snap_shots" href="http://proxy2.de/forum/viewtopic.php?t=3475" target="_blank" rel="nofollow">http://proxy2.de/forum/viewtopic.php?t=3475</a>]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9828.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9828.php</link>
				<pubDate><![CDATA[Fri, 13 Aug 2004 09:29:13]]> GMT</pubDate>
				<author><![CDATA[ amber222]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ [quote="Ktoadd"]Mine was just hacked as well:<br /> <br /> <a class="snap_shots" href="http://www.bluetongueskinks.net/guestbook" target="_blank" rel="nofollow">http://www.bluetongueskinks.net/guestbook</a>[/quote] Fixed.<br /> <br /> Since you are using 2.2 and now have no entries how would you fancy trying my upgrade script which should update the SQL entries from 2.2 to 2.3.1. At worst you will just have to delete all the entries from the database but as it's blank anyway .......]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9832.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9832.php</link>
				<pubDate><![CDATA[Fri, 13 Aug 2004 16:31:41]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Carbonize, I'd like to try the script.  How can I get it? I will be upgrading one later tonight or tomorrow... wish I'd had it yesterday.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9856.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9856.php</link>
				<pubDate><![CDATA[Fri, 13 Aug 2004 22:49:12]]> GMT</pubDate>
				<author><![CDATA[ amber222]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ OK back up your current SQL database. Download www.carbonize.co.uk/install.zip and extract the file. Replace the install.php in 2.3.1 with this one. Then upload 2.3.1 to your host, preferably in a different folder to 2.2. Fill i the admin/config.php and then try the install.php. I hope it works.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9862.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9862.php</link>
				<pubDate><![CDATA[Fri, 13 Aug 2004 23:38:43]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Okay, Thanks!  <img src="https://proxy2.de/forum//images/smilies/283a16da79f3aa23fe1025c96295f04f.gif" /> <br /> <br /> Like I said, it will be later on tonight.  I'll keep you posted.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9863.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9863.php</link>
				<pubDate><![CDATA[Fri, 13 Aug 2004 23:51:51]]> GMT</pubDate>
				<author><![CDATA[ amber222]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Carbonize, that upgrade didn't happen yet.  I am doing this for someone else.   - I don't know, maybe a day or two.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9884.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9884.php</link>
				<pubDate><![CDATA[Sat, 14 Aug 2004 08:59:27]]> GMT</pubDate>
				<author><![CDATA[ amber222]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ No worries. Atleast I got off my arse and uploaded the thing for people to try. lol]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9889.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9889.php</link>
				<pubDate><![CDATA[Sat, 14 Aug 2004 09:35:37]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Carbonize, when I went to upgrade the guestbook, I found the Admin had some other tables with data in there.  Didn't know what the information was for, so I decided not to upgrade the database (there were no guestbook entries).  I created a new database instead.  So I didn't get to try your script.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9986.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9986.php</link>
				<pubDate><![CDATA[Thu, 19 Aug 2004 03:44:23]]> GMT</pubDate>
				<author><![CDATA[ amber222]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ oh well i'll have to test it myself someday.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/9987.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/9987.php</link>
				<pubDate><![CDATA[Thu, 19 Aug 2004 04:04:17]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I was just doing a search of the forums to see when the last time the script writer actually posted was and I discovered that the SQL injection exploit was actually discovered in 2002 and reported to him, It also affected 2.3 which I assume is why he released 2.3.1. I wonder if I can't just edit the session.class.php file to fix the exploit in 2.2 and save people having to upgrade. <br /> <br /> Somebody send me the session.class.php file from 2.2 please. Email is at the bottom of this post or on my website.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/10607.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/10607.php</link>
				<pubDate><![CDATA[Sat, 25 Sep 2004 16:40:32]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ On its way to you carb. <img src="https://proxy2.de/forum//images/smilies/69934afc394145350659cd7add244ca9.gif" />]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/10609.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/10609.php</link>
				<pubDate><![CDATA[Sat, 25 Sep 2004 20:12:29]]> GMT</pubDate>
				<author><![CDATA[ JTD]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ hi.....i'm a noob..welll how use this???<br /> <br /> ') OR ('a' = 'a<br /> <br /> <br /> Sorry for my bad inglish i'm italian]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/10777.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/10777.php</link>
				<pubDate><![CDATA[Sun, 3 Oct 2004 00:58:12]]> GMT</pubDate>
				<author><![CDATA[ bipicciuti]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I dont think anyone is going to explain to you on how to use an exploit.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/3037/10778.php</guid>
				<link>https://proxy2.de/forum/posts/preList/3037/10778.php</link>
				<pubDate><![CDATA[Sun, 3 Oct 2004 03:07:37]]> GMT</pubDate>
				<author><![CDATA[ JTD]]></author>
			</item>
	</channel>
</rss>