29.01.2014 Views

Objet du rapport / réunion - inetdoc.net

Objet du rapport / réunion - inetdoc.net

Objet du rapport / réunion - inetdoc.net

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

IUP STRI – M2 2007<br />

Projet Sécurité – Equipe attaque G1<br />

Voici les résultats:<br />

JordiX:~ jordi$ dirb http://172.17.0.2<br />

/Volumes/Data/jordi/Docs/Hacking/wordlists/wordlists_dirb/common.txt<br />

-----------------<br />

DIRB v1.4<br />

By The Dark Raver<br />

-----------------<br />

START_TIME: Tue Oct 31 16:44:13 2006<br />

URL_BASE: http://172.17.0.2/<br />

WORDLIST_FILES: /Volumes/Data/jordi/Docs/Hacking/wordlists/wordlists_dirb/common.txt<br />

SERVER_BANNER: Apache/2.0.54 (Debian GNU/Linux) PHP/4.3.10-16<br />

NOT_EXISTANT_CODE: 404<br />

-----------------<br />

Generating Wordlist...<br />

Generated Words: 754<br />

---- Scanning URL: http://172.17.0.2/ ----<br />

FOUND: http://172.17.0.2/cgi-bin/ - CODE: 403<br />

(*) DIRECTORY: http://172.17.0.2/images/<br />

FOUND: http://172.17.0.2/index - CODE: 200<br />

(*) DIRECTORY: http://172.17.0.2/phpmyadmin/<br />

FOUND: http://172.17.0.2/test - CODE: 200<br />

---- Entering directory: http://172.17.0.2/images/ ----<br />

(!) WARNING: Directory is listable. No need to scan it.<br />

(Use mode -w if you want to scan it anyway)<br />

---- Entering directory: http://172.17.0.2/phpmyadmin/ ----<br />

(*) DIRECTORY: http://172.17.0.2/phpmyadmin/css/<br />

FOUND: http://172.17.0.2/phpmyadmin/docs - CODE: 200<br />

FOUND: http://172.17.0.2/phpmyadmin/error - CODE: 200<br />

FOUND: http://172.17.0.2/phpmyadmin/export - CODE: 200<br />

FOUND: http://172.17.0.2/phpmyadmin/index - CODE: 200<br />

FOUND: http://172.17.0.2/phpmyadmin/left - CODE: 200<br />

(*) DIRECTORY: http://172.17.0.2/phpmyadmin/libraries/<br />

FOUND: http://172.17.0.2/phpmyadmin/main - CODE: 200<br />

FOUND: http://172.17.0.2/phpmyadmin/sql - CODE: 200<br />

---- Entering directory: http://172.17.0.2/phpmyadmin/css/ ----<br />

(!) WARNING: Directory is listable. No need to scan it.<br />

(Use mode -w if you want to scan it anyway)<br />

---- Entering directory: http://172.17.0.2/phpmyadmin/libraries/ ----<br />

(!) WARNING: Directory is listable. No need to scan it.<br />

(Use mode -w if you want to scan it anyway)<br />

-----------------<br />

DOWNLOADED: 1508 - FOUND: 10<br />

Nous observons immédiatement que les bases de données sont gérables par<br />

« phpMyAdmin »:<br />

. Copyright (c) 2007 – GNU Free Documentation licence ­ Équipe Attaque G1 – M2 STRI 22

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!