Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 65 guests and 3 members online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow PUT method.
EH-Net
May 24, 2013, 09:46:41 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: PUT method.  (Read 3696 times)
0 Members and 1 Guest are viewing this topic.
jonas
Newbie
*
Offline Offline

Posts: 46


View Profile
« on: July 12, 2010, 02:56:50 PM »

Hey guys.

I have problems understanding exactly how i can upload my phpshell to a web server that allows the PUT method to be executed.

Earlier i solved this using SQL injection and xp_cmdshell with tftp.
Is there any way i can type something like PUT and file path behind the domain name?  Or can anyone just point me to a place where this is explained. 

Im taking a pentesting course so this is lab machines... =)
Logged
BillV
Hero Member
*****
Offline Offline

Posts: 1892


View Profile WWW
« Reply #1 on: July 12, 2010, 03:24:48 PM »

http://www.w3.org/Protocols/rfc2616/rfc2616-sec9.html

http://geekswithblogs.net/narent/archive/2008/01/04/118224.aspx
Logged
ajohnson
Recruiters
Hero Member
*
Online Online

Posts: 1060


aka dynamik


View Profile WWW
« Reply #2 on: July 12, 2010, 03:33:05 PM »

You might also want to check out /pentest/web/put.pl in Backtrack. Curl supports HTTP Put as well.
Logged

WIP: GCFA | www.infosiege.net | @infosiege

The day you stop learning is the day you start becoming obsolete.
jonas
Newbie
*
Offline Offline

Posts: 46


View Profile
« Reply #3 on: July 12, 2010, 03:55:22 PM »

Thx for the feedback.  I actually noticed theres a webdav in the framework =)
Pretty neat stuff.
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.058 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.