ثغره سكربت phpAuction مع التطبيق لمواقع الاباحه

مشاهدات الان
sfehthayef.blogspot.com
هذا موقع تم اختراقه لـ -auction.info اختراق تخريب وسطحي المهم

السكربت : لمن حب تجربتهـ phpAuction من مصدره
تطبيق : السكربت
Step One: Create a database
Step Two: Edit config.php with your MySQL information.
Step Three: Edit includes\adminmail.inc.php with your main email.
Step Four: Upload all all files to your server, keeping the directory structure in tact..
Step Five: Set permissions on the following files:
chmod 777: the folder "counter"
chmod 666: /counter/auction_id.txt
chmod 777: the folder "uploaded"
chmod 777: the folder "banners"
chmod 777: /includes/adminmail.inc.php
chmod 777: /includes/categories_select_box.inc.php
chmod 777: /includes/countries.inc.php
chmod 777:/includes/currency.inc.php
chmod 666: log.txt (for debugging purposes in payment system)
Step Six: Create a cron job to ensure that the page cron.php gets executed periodically. This page will close auctions, notify bidders, etc. The following is a cron to run daily at 12:15 am. You can change this once your site has heavier traffic to run more often however to start with once a day is highly recemmended.
Using Cpanel, access cron jobs off the main page. There, click on Advanced (Unix Style), and enter your email address then enter the following information in the box's: (15) in first box, (0) in second, (*) in third, forth and fifth, (GET http://-- --- .com/cron.php > /dev/null) inn the text field.
15 0 * * * GET http://y our do main.com/cron.php >  /dev/null
Step Seven: Visit http://www.you rw ebs ite.com/install.php. This will run the installer that will create the tables and populate your data, after the installer has completed you will be prompted to create your admin login information. Once complete, browse through the admin sections to edit your website.
It is recommended that you delete install.php from your server after the site is installed
والموقع المخترق مركب السكربت !!!
وهذى اوامر بحث :
intitle:index.of config.php
intitle:"Index of" phpinfo.php
intitle:index.of adminmail.inc.php =
intitle:index.of config.tmp.php
intitle:index.of config.php =Auction
intitle:index.of =Auction
اذا حبيت نسخ المقالهـ

ليست هناك تعليقات:

إرسال تعليق