Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

The target is alive! But is not running on vbulletin for all tested sites #12

Closed
qywx opened this issue May 7, 2016 · 10 comments
Closed

Comments

@qywx
Copy link

qywx commented May 7, 2016

The target is alive! But is not running on vbulletin. - the same message for first 10 sites from https://www.google.com/search?q=powered+by+vbulletin
Is that normal?

@qywx qywx changed the title ca The target is alive! But is not running on vbulletin for all tested sites May 7, 2016
@rezasp
Copy link
Collaborator

rezasp commented May 7, 2016

hello please tell me targets you have checked and the messege that you’ve got from the scanner

@qywx
Copy link
Author

qywx commented May 9, 2016

http://www.skyscrapercity.com

$ ./vbscan.pl http://www.skyscrapercity.com/

[+] Processing http://www.skyscrapercity.com/ ...


[++] The target is alive! But is not running on vbulletin.
Do you want to continue? [y/N] y

[+] Detecting vBulletin Version
[++] vBulletin Version : ver 404


[+] Checking apache info/status files
[++] Readable info/status files are not found

[+] Checking admincp/modcp path
[++] admincp does not exist or renamed
[++] modcp does not exist or renamed

[+] Checking upgrade.php to find admincp
[++] upgrade.php not found

[+] Checking validator.php
[++] validator.php is not found

[+] Checking robots.txt existing
[++] robots.txt is not found

[+] Checking faq.php RCE backdoor
[++] Remote Code Execute backdoor not found

[+] Checking config.php.x for disclure config file
[++] Readable config files are not found

[+] Checking vBSEO 3.x - LFI (Local File Inclusion) vulnerability
[++] vbseo.php LFI is not vulnerable

[+] Checking vBulletin vBExperience 3 'sortorder' Parameter Cross Site Scripting Vulnerability
[++] xperience.php not vulnerable

[+] Checking arcade.php SQLI Vulnerability
[++] arcade.php not found

[+] Checking vBulletin YUI 2.9.0 XSS
[++] uploader.swf not found

[+] Checking for html tags status
[++] HTML tag are Disable

[+] Checking c99 xml shell in admincp/subscriptions.php
[++] c99 xml shell is Not Found

[+] Finding common backup files name
[++] Backup files are not found

[+] Finding common log files name
[++] error log is not found


[+] Checking Vbulletin 5.x - Remote Code Execution Exploit
[++] decodeArguments is not vulnerable


Your Report : reports/www.skyscrapercity.com.txt

So, vbscan detects VBulletin version, but says "is not running on vbulletin."
And there is a difference with versions on site 3.8.8 Beta 1 and was detected 4.0.4

@qywx
Copy link
Author

qywx commented May 9, 2016

http://www.alcoholhulp.be/forum-omgeving/

$ ./vbscan.pl http://www.alcoholhulp.be/forum-omgeving/

[+] Processing http://www.alcoholhulp.be/forum-omgeving/ ...


[++] The target is alive! But is not running on vbulletin.
Do you want to continue? [y/N] н

[+] Detecting vBulletin Version
[++] vBulletin Version : ver 404

[+] Checking apache info/status files
[++] Readable info/status files are not found

[+] Checking admincp/modcp path
[++] admincp does not exist or renamed
[++] modcp does not exist or renamed

[+] Checking upgrade.php to find admincp
[++] upgrade.php not found

[+] Checking validator.php
[++] validator.php is not found

[+] Checking robots.txt existing
[++] robots.txt is not found

[+] Checking faq.php RCE backdoor
[++] Remote Code Execute backdoor not found

[+] Checking config.php.x for disclure config file
[++] Readable config files are not found

[+] Checking vBSEO 3.x - LFI (Local File Inclusion) vulnerability
[++] vbseo.php LFI is not vulnerable

[+] Checking vBulletin vBExperience 3 'sortorder' Parameter Cross Site Scripting Vulnerability
[++] xperience.php not vulnerable

[+] Checking arcade.php SQLI Vulnerability
[++] arcade.php not found

[+] Checking vBulletin YUI 2.9.0 XSS
[++] uploader.swf not found

[+] Checking for html tags status
[++] HTML tag are Disable

[+] Checking c99 xml shell in admincp/subscriptions.php
[++] c99 xml shell is Not Found

[+] Finding common backup files name
[++] Backup files are not found

[+] Finding common log files name
[++] error log is not found


[+] Checking Vbulletin 5.x - Remote Code Execution Exploit
[++] decodeArguments is not vulnerable


Your Report : reports/www.alcoholhulp.be.txt

On site written: Powered by vBulletin™ Version 4.0.7

@rezasp
Copy link
Collaborator

rezasp commented May 9, 2016

I checked your sites and i couldn't find any problem.

perl vbscan.pl http://www.skyscrapercity.com/

[+] Processing http://www.skyscrapercity.com/ ...

[+] Detecting vBulletin Version
[++] vBulletin Version :  vBulletin 3.8.8 Beta 1

perl vbscan.pl http://www.alcoholhulp.be/forum-omgeving/

[+] Processing http://www.alcoholhulp.be/forum-omgeving/ ...

[+] Detecting vBulletin Version
[++] vBulletin Version :  vBulletin 4.0.5

check your connection or vpn connection ...
what is your OS ?

@qywx
Copy link
Author

qywx commented May 10, 2016

Win10+Strawberry. No VPN. Internet works fine.
I'll try run it under linux.

@qywx
Copy link
Author

qywx commented May 10, 2016

I understood. Oh my firewall. The target is alive! for me says that connection could be established. It should say Can't find or No connection.

@qywx
Copy link
Author

qywx commented May 10, 2016

Please try www.kharkovforum.com

@rezasp
Copy link
Collaborator

rezasp commented May 10, 2016

use it with https://

http://

perl vbscan.pl www.kharkovforum.com

[+] Processing http://www.kharkovforum.com ...

[++] The target is alive! But is not running on vbulletin.
Do you want to continue? [y/N] 

https://

perl vbscan.pl https://www.kharkovforum.com/

[+] Processing https://www.kharkovforum.com/ ...

[+] Detecting vBulletin Version
[++] vBulletin Version :  vBulletin 3.8.7

@rezasp
Copy link
Collaborator

rezasp commented May 11, 2016

I working on new version detector engine for fix bugs for new relaese
Wait for next version

@rezasp rezasp closed this as completed May 12, 2016
@qywx
Copy link
Author

qywx commented May 16, 2016

Thank you.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants