Re: Owl Intranet Engine - bypass admin

From: Rohan Amin (rohan_at_rohanamin.com)
Date: 05/15/03

  • Next message: Herwig.Thyssens_at_ey.be: "RE: penetration test in a Windows 2000/NT network"
    Date: Wed, 14 May 2003 22:13:21 -0400
    To: cdowns <cdowns@drippingdead.com>
    
    

    Which version of Owl are you referring to? With version 0.7 it seems
    that you can view the file list (still a problem) but you can't
    actually view or download any files (it kicks you back out to the
    login prompt).

    Regards,

    Rohan

    On Tue, May 13, 2003 at 05:26:39PM -0500, cdowns wrote:
    > Good Afternoon,
    > After working on a pen-test this week I came across OWL ( Owl
    > Intranet Engine ) which is and open source file sharing utility written
    > in php and run on Apache. I was trying to see where I could possible
    > Inject, CSS or just plane command line exec.
    >
    > browse.php which requires("owl.lib.php"), there is a function that
    > is not checking valid loginame:passwords. So you can view and download
    > any file on the system, you can also modify them.
    >
    > I have not gotten to deep into this as I have other things to do as
    > well. If anyone has any comments please feel free to share. Im pretty
    > shure you could do a little more;)
    >
    > If you want to look here is the main hosted site, its ->
    > http://owl.sourceforge.net/
    >
    > heres is a sample:
    >
    > http://www.someplace.com/intranet/browse.php?loginname=whocares&parent=1&expand=1&order=creatorid&sortposted=ASC
    >
    > Thanks all.
    >
    > ~!>D
    >
    > --
    > ------------------------------------------
    > Network Security Engineer
    > http://www.angrypacket.com
    > Christopher M Downs,RHCE
    > cdowns@bigunz.angrypacket.com
    >
    > char ash[]="\x48\x61\x69\x6C\x20"
    > "\x74\x6F\x20\x74\x68\x65\x20\x4B"
    > "\x69\x6E\x67";
    > -------------------------------------------
    >
    >
    >
    >
    > ---------------------------------------------------------------------------
    > *** Wireless LAN Policies for Security & Management - NEW White Paper ***
    > Just like wired networks, wireless LANs require network security policies
    > that are enforced to protect WLANs from known vulnerabilities and threats.
    > Learn to design, implement and enforce WLAN security policies to lockdown
    > enterprise WLANs.
    >
    > To get your FREE white paper visit us at:
    > http://www.securityfocus.com/AirDefense-pen-test
    > ----------------------------------------------------------------------------
    >

    ---------------------------------------------------------------------------
    *** Wireless LAN Policies for Security & Management - NEW White Paper ***
    Just like wired networks, wireless LANs require network security policies
    that are enforced to protect WLANs from known vulnerabilities and threats.
    Learn to design, implement and enforce WLAN security policies to lockdown enterprise WLANs.

    To get your FREE white paper visit us at:
    http://www.securityfocus.com/AirDefense-pen-test
    ----------------------------------------------------------------------------


  • Next message: Herwig.Thyssens_at_ey.be: "RE: penetration test in a Windows 2000/NT network"

    Relevant Pages

    • RE: Windows 2003 Server - MS Rulez?
      ... Network Security Engineer ... secure, i.e. known methods of attack did not gave a damn thing. ... lockdown enterprise WLANs. ... wireless LANs require network security policies ...
      (Focus-Microsoft)
    • Re: Pen test courses
      ... Taliskers Network Security Tools ... wireless LANs require network security policies ... > that are enforced to protect WLANs from known vulnerabilities and threats. ... implement and enforce WLAN security policies to lockdown enterprise WLANs. ...
      (Pen-Test)
    • RE: A question for the list...
      ... >> evolution of the network ... implement and enforce WLAN security policies ... >> enterprise WLANs. ... implement and enforce WLAN security policies to ...
      (Incidents)
    • Re: [ANNOUNCE] protocol watcher
      ... attack, which is known to be a SYN attack! ... wireless LANs require network security policies ... > that are enforced to protect WLANs from known vulnerabilities and threats. ... implement and enforce WLAN security policies to lockdown enterprise WLANs. ...
      (Incidents)
    • Re: A question for the list...
      ... Just like wired networks, wireless LANs require network security policies ... implement and enforce WLAN security policies to lockdown enterprise WLANs. ...
      (Incidents)