IIS exploit hacking

So in this post m going to tell u how to hack a site which is powered by IIS



   1:- Click on START and click on RUN then enter the below code and then press ENTER

%WINDIR%\EXPLORER.EXE ,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}\::{BDEADF00-C265-11d0-BCED-00A0C90AB50F} 
2:- A new window name "WEB FOLDER" gets open

3:- Right click and click on New, Add Web Folder then enter your vulnerable website address as show below in the image

Google Dork :- "
Powered by IIS"
( I don't know the exact dork , but usually I use this one )


4:- Click on Next , Next , Finish...

Now u can insert your deface page on that site by simply Copy & Paste


Note :-a) Also after getting access to the website...Many websites don't allows you to
add/edit your deface page ( Coz Microsoft has already fixed this vulnerability
in many website )...

No comments:

Post a Comment

Please feel free to comment !!!!!!!!!!!!!