From 788791ff686738f1671a99388b0e4e519af20ccd Mon Sep 17 00:00:00 2001 From: jakxx Date: Tue, 3 Mar 2015 14:29:11 -0500 Subject: [PATCH 01/23] Update README.md --- README.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/README.md b/README.md index 08954a8..3d9d88b 100644 --- a/README.md +++ b/README.md @@ -55,8 +55,7 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) * Bricolage - - + From cec134e737ea1788c8ad161d677c3be7aac9db3f Mon Sep 17 00:00:00 2001 From: jakxx Date: Tue, 3 Mar 2015 14:35:02 -0500 Subject: [PATCH 02/23] Update README.md --- README.md | 1 + 1 file changed, 1 insertion(+) diff --git a/README.md b/README.md index 3d9d88b..c2ce1c6 100644 --- a/README.md +++ b/README.md @@ -99,6 +99,7 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) + From eee43b9e50bfd6c1fb95b05427d73044d0756310 Mon Sep 17 00:00:00 2001 From: jakxx Date: Wed, 4 Mar 2015 09:58:19 -0500 Subject: [PATCH 03/23] Update README.md --- README.md | 14 ++++++-------- 1 file changed, 6 insertions(+), 8 deletions(-) diff --git a/README.md b/README.md index c2ce1c6..8501e5b 100644 --- a/README.md +++ b/README.md @@ -9,17 +9,16 @@ Updated and released by the Web App Defaults DB Group If you have info and don't want to trouble with Git, please feel free to shoot the info to: -webappdefaultsdb_submissions@room362.com +webappdefaultsdb@gmail.com and let us worry about the repo voodoo. If you wish to submit via git, please use the following field types: -* ADMINURL: -* USERPASS: -* INTERESTINGURL: -* EXPLOITLINK: -* COMMENT: +* AdminURL: +* UserPass: +* Comment: +* Link: This will make it much easier for people to parse the entire db for information. @@ -30,9 +29,8 @@ Info: This webapp falls over if you hit /dos.php on version 1.0 and prior * ADMINURL: /admin/uberleet.php * USERPASS: root:toor -* INTERESTINGURL: /database_test.php -* EXPLOITLINK: [http://exploitsdownload.com/search/cms](http://exploitsdownload.com/search/cms) * COMMENT: Usernames with be user@domain.com +* LINK: [http://exploitsdownload.com/search/cms](http://exploitsdownload.com/search/cms) Documentation: [http://www.wikipedia.org/](http:/www.wikipedia.org/) From dbc8fd6cf44f044088d770cb58ae1906d0d44fdb Mon Sep 17 00:00:00 2001 From: jakxx Date: Wed, 4 Mar 2015 14:56:03 -0500 Subject: [PATCH 04/23] Update README.md --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index 8501e5b..9c09985 100644 --- a/README.md +++ b/README.md @@ -97,7 +97,7 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) - + From af58f1e449d773abe51874085c8763cbadaae810 Mon Sep 17 00:00:00 2001 From: jakxx Date: Wed, 4 Mar 2015 14:58:47 -0500 Subject: [PATCH 05/23] Removed blank lines --- README.md | 2 -- 1 file changed, 2 deletions(-) diff --git a/README.md b/README.md index 9c09985..b56cc26 100644 --- a/README.md +++ b/README.md @@ -99,8 +99,6 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) - - From 5c3aca18e763058181411d7ed7efe448d6780a84 Mon Sep 17 00:00:00 2001 From: jakxx Date: Mon, 23 Mar 2015 13:12:48 -0400 Subject: [PATCH 06/23] Added Barracuda SSLVPN --- README.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/README.md b/README.md index b56cc26..02b8050 100644 --- a/README.md +++ b/README.md @@ -54,6 +54,8 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console)
NameURLUsernamePasswordCommentLink
Cascade Server/login.act  http://help.hannonhill.com/kb/security  
CivicSpaceTo be determined     
Clickability (Limelight Networks)hosted by limelight?     
IBM Lotus Web Content Management      
Ikiwiki      
ImpressCMS/admin.php     
inSync/GoAdminadminadmin http://support-public.cfm.software.dell.com/ddbeaa24-9332-4506-bda8-aceeef47af34:602964.pdf
Jadu"/mymicrosite/jadu/
"     
IBM Lotus Web Content Management      
Ikiwiki      
ImpressCMS/admin.php     
inSync/GoAdminadminadmin http://support-public.cfm.software.dell.com/ddbeaa24-9332-4506-bda8-aceeef47af34:602964.pdf
Quest Software inSync/GoAdminadminadmin http://support-public.cfm.software.dell.com/ddbeaa24-9332-4506-bda8-aceeef47af34:602964.pdf
Jadu"/mymicrosite/jadu/
"     
ImpressCMS/admin.php     
Quest Software inSync/GoAdminadminadmin http://support-public.cfm.software.dell.com/ddbeaa24-9332-4506-bda8-aceeef47af34:602964.pdf
Jadu"/mymicrosite/jadu/
"     
JCore/admin/admin    
Joomla!/administrator or /joomla/administratoradmin    
Jumbojumbo/loginpage.phpadminpassword   
+ + From 6a4c0eb064b8525faa3f819150e8d26443793b43 Mon Sep 17 00:00:00 2001 From: jakxx Date: Mon, 23 Mar 2015 13:17:33 -0400 Subject: [PATCH 07/23] removed link --- README.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/README.md b/README.md index 02b8050..b17c4ad 100644 --- a/README.md +++ b/README.md @@ -54,8 +54,8 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console)
NameURLUsernamePasswordCommentLink
Barracuda SSL VPNhttps://host.com/default/showLogon.dossladminssladmin https://techlib.barracuda.com/sslvpn/admininterfaces
Barracuda SSL VPN Adminhttp://host.com:8000/cgi-mod/index.cgiadminadmin https://techlib.barracuda.com/sslvpn/admininterfaces
Cascade Server/login.act  http://help.hannonhill.com/kb/security  
CivicSpaceTo be determined     
Clickability (Limelight Networks)hosted by limelight?     
- - + + From 8c36fa7d07d62cb59d1e92f4143dd2f9e9bd502e Mon Sep 17 00:00:00 2001 From: jakxx Date: Mon, 23 Mar 2015 13:18:10 -0400 Subject: [PATCH 08/23] typo --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index b17c4ad..ec1ea19 100644 --- a/README.md +++ b/README.md @@ -55,7 +55,7 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console)
NameURLUsernamePasswordCommentLink
Barracuda SSL VPNhttps://host.com/default/showLogon.dossladminssladmin https://techlib.barracuda.com/sslvpn/admininterfaces
Barracuda SSL VPN Adminhttp://host.com:8000/cgi-mod/index.cgiadminadmin https://techlib.barracuda.com/sslvpn/admininterfaces
Barracuda SSL VPN/default/showLogon.dossladminssladmin https://techlib.barracuda.com/sslvpn/admininterfaces
Barracuda SSL VPN Admin.com:8000/cgi-mod/index.cgiadminssladmin https://techlib.barracuda.com/sslvpn/admininterfaces
Cascade Server/login.act  http://help.hannonhill.com/kb/security  
CivicSpaceTo be determined     
Clickability (Limelight Networks)hosted by limelight?     
- + From 6372312fc9b14ca39ab76c0a13194a3180bf356a Mon Sep 17 00:00:00 2001 From: jakxx Date: Mon, 23 Mar 2015 13:20:05 -0400 Subject: [PATCH 09/23] testing standalone list format --- list.html | 142 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 142 insertions(+) create mode 100644 list.html diff --git a/list.html b/list.html new file mode 100644 index 0000000..80cf88b --- /dev/null +++ b/list.html @@ -0,0 +1,142 @@ + +
NameURLUsernamePasswordCommentLink
Barracuda SSL VPN/default/showLogon.dossladminssladmin https://techlib.barracuda.com/sslvpn/admininterfaces
Barracuda SSL VPN Admin.com:8000/cgi-mod/index.cgiadminssladmin https://techlib.barracuda.com/sslvpn/admininterfaces
Barracuda SSL VPN Admin.com:8000/cgi-mod/index.cgiadminadmin https://techlib.barracuda.com/sslvpn/admininterfaces
Cascade Server/login.act  http://help.hannonhill.com/kb/security  
CivicSpaceTo be determined     
Clickability (Limelight Networks)hosted by limelight?     
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
NameURLUsernamePasswordCommentLink
Barracuda SSL VPN/default/showLogon.dossladminssladmin https://techlib.barracuda.com/sslvpn/admininterfaces
Barracuda SSL VPN Admin.com:8000/cgi-mod/index.cgiadminadmin https://techlib.barracuda.com/sslvpn/admininterfaces
Cascade Server/login.act  http://help.hannonhill.com/kb/security  
CivicSpaceTo be determined     
Clickability (Limelight Networks)hosted by limelight?     
CMS Made Simple admin   http://exploitsdownload.com/search/cmsmadesimple
CMSimple admintest  http://exploitsdownload.com/search/cmsimple
Composite C1/Administrationadmin@.comadmin Username may be admin@yourstore.com 
Computhink ViewWise      
Concrete5/index.php/login (alternatively /dashboard) adminrandom set at install"Yep, great tip. When you go to logs (after resetting the password), you tick the box for emails sent and click on print view with full text. This opens the email that was sent with the link to set a new password. Click on that link and it will open a new browser window."http://exploitsdownload.com/search/concrete5
Contegro    Hosted on Contegro.  
Content SORT    WP plugin 
CoreMedia WCM    <- Magic Quadrant Masterbaters 
Cotonti/admin.php    http://exploitsdownload.com/search/cotonti
Daisy/loginadminadmin   
Django-cms/adminadmin   http://exploitsdownload.com/search/django
Dokuwiki/dokuwiki?do=login    http://exploitsdownload.com/search/dokuwiki
Dotclear/dotclear/admin/    http://exploitsdownload.com/search/dotclear
dotCMS/admin/admin@dotcms.org (pre 1.9.2 test@dotcms.org)admin (pre 1.9.2 test)http://dotcms.com/docs/1.9/DefaultsOnAnInitialDotCMSInstall http://exploitsdownload.com/search/dotcms
DotNetNukeAdmin loginadmin   http://exploitsdownload.com/search/dotnetnuke
Drupal/admin or /?q=admin (non-clean) adminassigned in setup  http://exploitsdownload.com/search/drupal
DSpace(dspace?).site.com/admin      
DynPG/cms or /dynpg    http://exploitsdownload.com/search/dynpg
e107//e107_admin/admin.php?view.all    http://exploitsdownload.com/search/e107
Ektron CMS400.Net/workarea/login.aspxadminadmindocumentation.ektron.com/CMS400/v70/adminmanual.pdf  
Elcom CMS     http://exploitsdownload.com/search/elcom
EMC Documentum ECM      
EPrints/perl/users/homeadminadmin   
Escenic Content Engine/escenic/ _admin Specified by ownerdocumentation.vizrt.com/ece-pub-admin-guide-5.4.pdf  
Exponent CMS   http://docs.exponentcms.org/docs/2.0.3/logging-in http://exploitsdownload.com/search/exponentcms
ExpressionEngine/admin.php or /phpmyadmin/    http://exploitsdownload.com/search?q=expression+engine
Exsite Webware/cgi-bin/adminpassword   
eZ Publishadd "_admin" to the end of the frontoffice urladminpassword  http://exploitsdownload.com/search?q=frog+cms
Fedora.com:8091 or /loginadminadmin   
Flagship Docs      
Foswiki      
Frog CMS/admin/adminpassword creds valid pre 1.0 version 
Geeklog/admin/Adminpassword valid as of 02, looking for more recent sources.  
Habari/admin/login.php    http://exploitsdownload.com/search?q=habari
Hippo CMS.com:8080/cmsadminadmin   
Hyland OnBase ECM    Info Behind Paywall 
IBM Enterprise Content Management      
IBM Lotus Web Content Management      
Ikiwiki      
ImpressCMS/admin.php     
Quest Software inSync/GoAdminadminadmin http://support-public.cfm.software.dell.com/ddbeaa24-9332-4506-bda8-aceeef47af34:602964.pdf
Jadu"/mymicrosite/jadu/
JCore/admin/admin    
Joomla!/administrator or /joomla/administratoradmin    
Jumbojumbo/loginpage.phpadminpassword   
Kajona      
Kentico CMS/CMSSiteManageradministrator:blank:   
KnowledgeTree Community Edition/knowledgetree/adminadmin   
Liferay Community Edition      
LogicalDOC/logicaldoc/webdav/storeadminadmin As of 4.5 
Lyceum      
Magnolia:8080/magnoliaAuthor/.magnolia.superusersuperuser   
Mamboadministrator/index.phpadminadmin   
Mediawiki       
MiaCMS/login.phpadminlet_me_in   
Microsoft Office 365      
Microsoft SharePoint Foundation      
Microsoft SharePoint Server      
Midgard CMS/midgardadminpasswordhttp://www.midgard-project.org/documentation/midgard-admin-sitewizard/#36700c60b73acecb128e78b284b2d84e  
MODx    -Weirdness 
mojoPortal/Secure/Login.aspxadmin@admin.comadminhttp://www.mojoportal.com/installation-quick-start.aspx  
Movable Type_mt/mt.cgi     
Mura CMS/adminadminadminhttp://docs.getmura.com/user-guide/users/  
Nucleus CMS/nucleus/  http://faq.nucleuscms.org/item/80  
Nuxeo EP/adminAdministratorAdministratorhttp://doc.nuxeo.com/display/NXDOC54/Setup  
O3spaces      
Ocportal/adminzoneadmin http://ocportal.com/docs5/tut_configuration.htm http://exploitsdownload.com/search/ocportal
OpenACS      
OpenCms8080/opencms/opencms/system/login/Adminadminhttp://www.opencms.org/en/development/installation/server.html http://exploitsdownload.com/search/opencms
OpenKM/OpenKMokmAdminadminhttp://forum.openkm.com/viewtopic.php?f=4&t=3711  
OpenText ECM Suite      
OpenText Web Experience Management      
OpenText Web Site Management      
OpenWGA/adminadminwgahttp://www.openwga.com/home/support/tutorials/going_live_from_openwga_developer_studio.en.html  
Opus     http://exploitsdownload.com/search/opus
Oracle ECM Suite.com:7001/console  http://docs.oracle.com/cd/E17904_01/doc.1111/e14495/verify.htm#CHDHCEFBcreds set in setup 
Orchard Project/Admin/   creds set in setup 
papaya CMS/papaya/  http://www.papaya-cms.comdocumentation in german 
Peardrop(CMS)/admin.phpadmin(?)adminhttp://peardrop.coolmediatech.com/index.php/Documentation_%280.1.x%29  
Percussion Software CM1      
Phire CMS      
PHP-Fusion/login.php  http://www.php-fusion.co.uk/ http://exploitsdownload.com/search/phpfusion/
PHP-Nuke/nuke/admin.phpGodPassword  http://exploitsdownload.com/search/phpnuke/
PHPSlash godpasswordhttp://phpxref.com/xref/phpslash/doc/html/single/phpslash.html.source.html http://exploitsdownload.com/search/phpslash/
Phpweblog/admin/users.phpBypass using securiteam link http://www.securiteam.com/unixfocus/6K0021P0KE.htmlsitekey:phpwebloghttp://exploitsdownload.com/search/phpweblog/
phpWebSite/admin.php adminphpwebsitehintsforums.macworld.com/archive/index.php/t-10721.html http://exploitsdownload.com/search/phpwebsite
phpWiki/phpwiki/admin.php     
Pier.com/?command=PULoginadminpierhttp://www.piercms.com/doc/faq#193819363  
pimcore/adminadminadminwww.pimcore.com http://exploitsdownload.com/search/pimcore/
PivotX/pivotx  http://book.pivotx.netuser created name/passhttp://exploitsdownload.com/search/pivotx/
Pixie (CMS)/adminadminpixie123http://www.getpixie.co.uk/support/article/manual-installation/  
PmWiki adminhttp://yate.null.ro/pmwiki/index.php?n=PmWiki.PasswordsAdmin http://exploitsdownload.com/search/pmwiki/
Polopoly Web CMS      
Prestashop/admin or /admin939  http://doc.prestashop.com/display/PS14/System+Administrator+Guide/admin is renamed upon installhttp://exploitsdownload.com/search/prestashop/
ProcessWire/processwire/adminprocesswire2http://www.processwire.com  
Pulse CMS/pulsepro/demohttp://www.pulsecms.com/docs/settings.phpCouldn't find usernamehttp://exploitsdownload.com/search/pulsecms/
Radiant/admin/adminradianthttp://radiantcms.org  
RavenNuke CMS/admin.php or /ravennuke230/admin.php  http://rnwiki.ravennuke.com http://exploitsdownload.com/search/ravennuke/
Refinery CMS:3000/refinery   http://refinerycms.com/guides/getting-startedNo default user http://exploitsdownload.com/search/refinery/
RenovatioCMS/?RVGET_document=System+Management  www.renovatiocms.com/English Site Incomplete  
Scoop      
Serendipity/serendipity/serendipity_admin.phpJohn Doejohnhttp://www.s9y.org/36.html http://exploitsdownload.com/search/serendipity
SilverStripe/adminadminpasswordhttp://doc.silverstripe.org/sapphire/en/topics/configurationUser can assign defaults in configurationhttp://exploitsdownload.com/search/silverstripe
Sitecore Professional Edition     http://exploitsdownload.com/search/sitecore
Sitefinity CMS/Sitefinity/LoginPages/LoginFormadminPasswordhttp://www.sitefinity.com/devnet/kb.aspxIf you see telerik.rad it's sitefinityhttp://exploitsdownload.com/search/sitefinity
Sitekit CMS/admin  http://www.sitekit.net  
SMW+ rootm8nixhttp://www.smwplus.com/index.php/Help:SMW%2B http://exploitsdownload.com/search/smwplus
SPIP      
Squiz CMS/_editadmin/editor/approverpasswordhttp://cms.squizsuite.net/quick-start-guide/admin password should be changedhttp://exploitsdownload.com/search?q=squiz
Squiz Matrix/_adminrootroothttp://matrix.squizsuite.net/quick-start-guide/ http://exploitsdownload.com/search?q=squiz
TangoCMSindex.php?url=session or /session  http://tangocms.org/announcements?page=2  
Telligent Community/telligent_evolutionadminpa$$word check for /solr/admin 
Textpattern/textpattern/index.php or /textpattern/    http://exploitsdownload.com/search?q=textpattern
Tiki Wiki CMS Groupware/tiki/tiki-login_scr.phpadminadminhttp://doc.tiki.org/Admin+Problems http://exploitsdownload.com/search?q=tikiwiki
Titan CMS      
Tribiq CMS/admintribiq.com/tribiq-6-documentation-installation.download http://exploitsdownload.com/search?q=tribiq
TWiki/cgi-bin/loginadmin http://twiki.org/ http://exploitsdownload.com/search?q=twiki
Typo      
TYPO3/typo3adminpasswordhttp://wiki.typo3.org/TYPO3_Installation_Basics http://exploitsdownload.com/search?q=typo3
uCoz/admin     
Umbraco/umbraco/login.aspxadmindefaulthttp://our.umbraco.org/  
VosaoCMS/cmsadmin@test.comadmin   
WebGUI root  http://www.exploitsdownload.com/search?q=webgui
Webnodes CMS      
WolfCMS/admin/http://www.wolfcms.org/wiki/books:administration http://www.exploitsdownload.com/search?q=wolfCMS
WordPress/wp-admin/adminhttp://codex.wordpress.org/Why are you looking HERE for WP?http://www.exploitsdownload.com/search?q=Wordpress
Wuzly/admin/login.phpAdministrator100  http://osvdb.com/search/search?search[vuln_title]=wuzly
Xaraya      
XOOPS/admin.phpadminadminxoops.org http://www.exploitsdownload.com/search?q=XOOPS
Xpress Engine/index.php?module=adminhttp://xpressengine.org http://www.exploitsdownload.com/search?q=XpressEngine
Yanel.com:8080/yanel/  http://yanel.wyona.org/en/documentation/index.html  
Zikula/admin.php or user.php  http://phpxref.zikula.de/nav.html?system/Admin/lib/Admin/Controller/Admin.php.html http://www.cvedetails.com/vulnerability-list/vendor_id-10810/Zikula.html
Zotonic adminadmin Written in Erlang
+ \ No newline at end of file From 39f42c899c608ad0dbcd1adb3f3187b0a8005f1d Mon Sep 17 00:00:00 2001 From: jakxx Date: Mon, 23 Mar 2015 20:38:05 -0400 Subject: [PATCH 10/23] Added/updated Ektron --- README.md | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/README.md b/README.md index ec1ea19..e52920a 100644 --- a/README.md +++ b/README.md @@ -78,7 +78,10 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) DSpace(dspace?).site.com/admin       DynPG/cms or /dynpg    http://exploitsdownload.com/search/dynpg e107//e107_admin/admin.php?view.all    http://exploitsdownload.com/search/e107 - Ektron CMS400.Net/workarea/login.aspxadminadmindocumentation.ektron.com/CMS400/v70/adminmanual.pdf   + Ektron CMS400.Net/workarea/login.aspxadminadminAll permissionsdocumentation.ektron.com/CMS400/v70/adminmanual.pdf + Ektron CMS400.Net/workarea/login.aspxbuiltinbuiltinAll permissionsdocumentation.ektron.com/CMS400/v70/adminmanual.pdf + Ektron CMS400.Net/workarea/login.aspxjeditjeditBasic permissionshttp://documentation.ektron.com/cms400/v802/mobile_help/Advanced/Content/Getting%20Started/Logging%20In%20and%20Out/loginandout_login.htm + Ektron CMS400.Net/workarea/login.aspxjmemberjmemberRead-Only permissionshttp://documentation.ektron.com/cms400/v802/mobile_help/Advanced/Content/Getting%20Started/Logging%20In%20and%20Out/loginandout_login.htm Elcom CMS     http://exploitsdownload.com/search/elcom EMC Documentum ECM       EPrints/perl/users/homeadminadmin    From c840cd000354523ba38178618e63b2a35ed984e5 Mon Sep 17 00:00:00 2001 From: jakxx Date: Mon, 23 Mar 2015 20:43:34 -0400 Subject: [PATCH 11/23] Updated List --- README.md | 141 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 141 insertions(+) diff --git a/README.md b/README.md index e52920a..0c16caf 100644 --- a/README.md +++ b/README.md @@ -51,6 +51,147 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) * BLOG:CMS * blosxom * Bricolage +* Barracuda SSL VPN +* Barracuda SSL VPN Admin +* Cascade Server +* CivicSpace +* Clickability (Limelight Networks) +* CMS Made Simple +* CMSimple +* Composite C1 +* Computhink ViewWise +* Concrete5 +* Contegro +* Content SORT +* CoreMedia WCM +* Cotonti +* Daisy +* Django-cms +* Dokuwiki +* Dotclear +* dotCMS +* DotNetNuke +* Drupal +* DSpace +* DynPG +* e107 +* Ektron CMS400.Net +* Ektron CMS400.Net +* Ektron CMS400.Net +* Ektron CMS400.Net +* Elcom CMS +* EMC Documentum ECM +* EPrints +* Escenic Content Engine +* Exponent CMS +* ExpressionEngine +* Exsite Webware +* eZ Publish +* Fedora +* Flagship Docs +* Foswiki +* Frog CMS +* Geeklog +* Habari +* Hippo CMS +* Hyland OnBase ECM +* IBM Enterprise Content Management +* IBM Lotus Web Content Management +* Ikiwiki +* ImpressCMS +* Quest Software inSync +* Jadu +* JCore +* Joomla! +* Jumbo +* Kajona +* Kentico CMS +* KnowledgeTree Community Edition +* Liferay Community Edition +* LogicalDOC +* Lyceum +* Magnolia +* Mambo +* Mediawiki +* MiaCMS +* Microsoft Office 365 +* Microsoft SharePoint Foundation +* Microsoft SharePoint Server +* Midgard CMS +* MODx +* mojoPortal +* Movable Type +* Mura CMS +* Nucleus CMS +* Nuxeo EP +* O3spaces +* Ocportal +* OpenACS +* OpenCms +* OpenKM +* OpenText ECM Suite +* OpenText Web Experience Management +* OpenText Web Site Management +* OpenWGA +* Opus +* Oracle ECM Suite +* Orchard Project +* papaya CMS +* Peardrop(CMS) +* Percussion Software CM1 +* Phire CMS +* PHP-Fusion +* PHP-Nuke +* PHPSlash +* Phpweblog +* phpWebSite +* phpWiki +* Pier +* pimcore +* PivotX +* Pixie (CMS) +* PmWiki +* Polopoly Web CMS +* Prestashop +* ProcessWire +* Pulse CMS +* Radiant +* RavenNuke CMS +* Refinery CMS +* RenovatioCMS +* Scoop +* Serendipity +* SilverStripe +* Sitecore Professional Edition +* Sitefinity CMS +* Sitekit CMS +* SMW+ +* SPIP +* Squiz CMS +* Squiz Matrix +* TangoCMS +* Telligent Community +* Textpattern +* Tiki Wiki CMS Groupware +* Titan CMS +* Tribiq CMS +* TWiki +* Typo +* TYPO3 +* uCoz +* Umbraco +* VosaoCMS +* WebGUI +* Webnodes CMS +* WolfCMS +* WordPress +* Wuzly +* Xaraya +* XOOPS +* Xpress Engine +* Yanel +* Zikula +* Zotonic From dd42f5f75ff9b0a6f58de2e3662a066d77d2efdb Mon Sep 17 00:00:00 2001 From: jakxx Date: Mon, 23 Mar 2015 20:56:23 -0400 Subject: [PATCH 12/23] minor update --- README.md | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/README.md b/README.md index 0c16caf..06b167a 100644 --- a/README.md +++ b/README.md @@ -16,7 +16,8 @@ and let us worry about the repo voodoo. If you wish to submit via git, please use the following field types: * AdminURL: -* UserPass: +* User +* Pass: * Comment: * Link: @@ -28,7 +29,8 @@ For example: Info: This webapp falls over if you hit /dos.php on version 1.0 and prior * ADMINURL: /admin/uberleet.php -* USERPASS: root:toor +* USER: root +* PASS: toor * COMMENT: Usernames with be user@domain.com * LINK: [http://exploitsdownload.com/search/cms](http://exploitsdownload.com/search/cms) From c237e6a4775703e644d5bb49520d34e04a164d44 Mon Sep 17 00:00:00 2001 From: jakxx Date: Mon, 23 Mar 2015 20:57:04 -0400 Subject: [PATCH 13/23] typo --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index 06b167a..b4a309b 100644 --- a/README.md +++ b/README.md @@ -30,7 +30,7 @@ Info: This webapp falls over if you hit /dos.php on version 1.0 and prior * ADMINURL: /admin/uberleet.php * USER: root -* PASS: toor +* PASS: toor * COMMENT: Usernames with be user@domain.com * LINK: [http://exploitsdownload.com/search/cms](http://exploitsdownload.com/search/cms) From e251c36710faf0d5a191ce7da0ae7e88d1567980 Mon Sep 17 00:00:00 2001 From: jakxx Date: Wed, 25 Mar 2015 15:10:27 -0400 Subject: [PATCH 14/23] Added Solarwinds Web HelpDesk --- README.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/README.md b/README.md index b4a309b..e77f2d6 100644 --- a/README.md +++ b/README.md @@ -168,6 +168,7 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) * Sitefinity CMS * Sitekit CMS * SMW+ +* Solarwinds Web HelpDesk * SPIP * Squiz CMS * Squiz Matrix @@ -312,6 +313,7 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) + From 129c086e777ba8c456150b64eef8c6cd66112c2c Mon Sep 17 00:00:00 2001 From: jakxx Date: Fri, 27 Mar 2015 13:10:22 -0400 Subject: [PATCH 15/23] Add Dell SonicWall Analyzer --- README.md | 1 + 1 file changed, 1 insertion(+) diff --git a/README.md b/README.md index e77f2d6..6374568 100644 --- a/README.md +++ b/README.md @@ -213,6 +213,7 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) + From 8bdc3d10132981c46c9636f5697a1c0f96e7e7dd Mon Sep 17 00:00:00 2001 From: jakxx Date: Fri, 27 Mar 2015 13:25:33 -0400 Subject: [PATCH 16/23] Added Supermicro IPMI --- README.md | 1 + 1 file changed, 1 insertion(+) diff --git a/README.md b/README.md index 6374568..c3211db 100644 --- a/README.md +++ b/README.md @@ -318,6 +318,7 @@ API Documentation: [https://apigee.com/console](https://apigee.com/console) + http://supermicro.com/manuals/other/SMT_IPMI_Manual.pdf From 604ed088cc2cd8c2e108ab8b162be347e47ad634 Mon Sep 17 00:00:00 2001 From: jakxx Date: Fri, 3 Apr 2015 18:29:17 -0400 Subject: [PATCH 17/23] Commit list.json --- list.json | 57 +++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 57 insertions(+) create mode 100644 list.json diff --git a/list.json b/list.json new file mode 100644 index 0000000..fb885dd --- /dev/null +++ b/list.json @@ -0,0 +1,57 @@ +{"defaults":[ + {"name":"Barracuda SSL VPN", "protocol":"http", "url":"/default/showLogon.do", "port":"80", "username":"ssladmin", "password":"ssladmin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, + {"name":"Barracuda SSL VPN Admin", "protocol":"http", "url":"/cgi-mod/index.cgi", "port":"8000", "username":"admin", "password":"admin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, + {"name":"Cascade Server", "protocol":"http", "url":"/login.act", "port":"80", "username":"", "password":"", "comment":"", "link":"http://help.hannonhill.com/kb/security"}, + {"name":"CivicSpace", "protocol":"http", "url":"/default/showLogon.do", "port":"80", "username":"ssladmin", "password":"ssladmin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, + {"name":"CMSimple", "protocol":"http", "url":"/?Welcome_to_CMSimple&login", "port":"80", "username":"", "password":"test", "comment":"", "link":"http://cmsimple.org/doku/en/?Installation___The_Installation", + {"name":"Composite C1", "protocol":"http", "url":"/Administration", "port":"80", "username":"admin", "password":"admin", "comment":"Username may be admin@yourstore.com", "link":""}, + {"name":"Daisy CMS", "protocol":"http", "url":"/login", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":""}, + {"name":"Dell Integrated Remote Access Controller(Dell iDRAC)", "protocol":"https", "url":"/", "port":"443", "username":"root", "password":"calvin", "comment":"", "link":""}, + {"name":"Dell SonicWall Analyzer", "protocol":"http", "url":"/sgms/login", "port":"80", "username":"admin", "password":"password", "comment":"", "link":"https://support.software.dell.com/sonicwall-analyzer/kb/sw9710"}, + {"name":"dotCMS", "protocol":"http", "url":"/admin/", "port":"80", "username":"admin@dotcms.com", "password":"admin", "comment":"", "link":"http://dotcms.com/docs/latest/logging-in"}, + {"name":"dotCMS < 1.9.2", "protocol":"http", "url":"/admin/", "port":"80", "username":"test@dotcms.com", "password":"test", "comment":"", "link":"http://kukui-cup-dotcms.googlecode.com/svn-history/r12/wiki/DevelopersGuide.wiki"}, + {"name":"DotNetNuke (host)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"host", "password":"dnnhost", "comment":"", "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, + {"name":"DotNetNuke (admin)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"admin", "password":"dnnadmin", "comment":"", "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, + {"name":"Ektron CMS400.Net (admin)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"documentation.ektron.com/CMS400/v70/adminmanual.pdf"}, + {"name":"Ektron CMS400.Net (builtin)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"builtin", "password":"builtin", "comment":"", "link":"documentation.ektron.com/CMS400/v70/adminmanual.pdf"}, + {"name":"Ektron CMS400.Net (jedit)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"jedit", "password":"jedit", "comment":"", "link":"http://documentation.ektron.com/cms400/v802/mobile_help/Advanced/Content/Getting%20Started/Logging%20In%20and%20Out/loginandout_login.htm"}, + {"name":"Ektron CMS400.Net (jmember)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"jmember", "password":"jmember", "comment":"", "link":"http://documentation.ektron.com/cms400/v802/mobile_help/Advanced/Content/Getting%20Started/Logging%20In%20and%20Out/loginandout_login.htm"}, + {"name":"EPrints", "protocol":"http", "url":"/perl/users/home", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"", + {"name":"Exsite Webware", "protocol":"http", "url":"/cgi-bin/", "port":"80", "username":"admin", "password":"password", "comment":"", "link":""}, + {"name":"eZ Publish", "protocol":"http", "url":"/", "port":"80", "username":"admin", "password":"publish", "comment":"", "link":"https://doc.ez.no/eZ-Publish/User-manual/4.x/The-administration-interface/The-login-page"}, + {"name":"Frog CMS", "protocol":"http", "url":"/admin/", "port":"80", "username":"admin", "password":"password", "comment":"", "link":""}, + {"name":"Geeklog", "protocol":"http", "url":"/admin", "port":"80", "username":"Admin", "password":"password", "comment":"", "link":"https://www.geeklog.net/forum/viewtopic.php?showtopic=59178"}, + {"name":"Hippo CMS 7.7", "protocol":"http", "url":"/cms", "port":"80", "username":"siteuser", "password":"siteuserpass", "comment":"", "link":"http://www.onehippo.org/7_7/library/upgrade-from-7.6/upgrade-7.6-to-7.7-authorization.html"}, + {"name":"Hippo CMS", "protocol":"http", "url":"/cms", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"http://vijaykiran.com/2009/06/customizing-hippo-cms-getting-started/"}, + {"name":"Jumbo", "protocol":"http", "url":"/jumbo/loginpage.php", "port":"80", "username":"admin", "password":"password", "comment":"", "link":""}, + {"name":"Kentico CMS", "protocol":"http", "url":"/CMSSiteManager", "port":"80", "username":"administrator", "password":"", "comment":"", "link":"http://devnet.kentico.com/downloads/kenticocms_quickguide.pdf"}, + {"name":"KnowledgeTree Community Edition", "protocol":"http", "url":"/knowledgetree/", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":""}, + {"name":"Liferay Community Edition", "protocol":"http", "url":"/default/showLogon.do", "port":"8080", "username":"bruno@7cogs.com", "password":"bruno", "comment":"", "link":"http://www.liferay.com/community/wiki/-/wiki/Main/Quick+Installation+Instructions"}, + {"name":"LogicalDOC", "protocol":"http", "url":"/logicaldoc/", "port":"8080", "username":"admin", "password":"admin", "comment":"", "link":"http://wiki.logicaldoc.com/wiki/Quick_Install"}, + {"name":"Magnolia CMS", "protocol":"http", "url":"/author", "port":"8080", "username":"superuser", "password":"superuser", "comment":"", "link":"https://wiki.magnolia-cms.com/display/WIKI/Deploying++Magnolia+from+start+to+finish"}, + {"name":"Mambo", "protocol":"http", "url":"/administrator/index.php", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":""}, + {"name":"MiaCMS", "protocol":"http", "url":"/login.php", "port":"80", "username":"admin", "password":"let_me_in", "comment":"", "link":""}, + {"name":"Midgard CMS", "protocol":"http", "url":"/midgard", "port":"80", "username":"admin", "password":"password", "comment":"", "link":""}, + {"name":"mojoPortal", "protocol":"http", "url":"/Secure/Login.aspx", "port":"80", "username":"admin@admin.com", "password":"admin", "comment":"", "link":"http://www.mojoportal.com/installation-quick-start.aspx"}, + {"name":"Mura CMS", "protocol":"http", "url":"/admin", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":""}, + {"name":"Nuxeo EP", "protocol":"http", "url":"/nuxeo", "port":"8080", "username":"Administrator", "password":"Administrator", "comment":"", "link":"http://doc.nuxeo.com/display/ADMINDOC/Setup"}, + {"name":"OpenCms", "protocol":"http", "url":"/opencms/opencms/system/login/", "port":"8080", "username":"Admin", "password":"admin", "comment":"", "link":"http://www.opencms.org/en/development/installation/server.html"}, + {"name":"OpenKM", "protocol":"http", "url":"/OpenKM", "port":"8080", "username":"okmAdmin", "password":"admin", "comment":"", "link":"http://forum.openkm.com/viewtopic.php?f=4&t=3711"}, + {"name":"OpenWGA CMS", "protocol":"http", "url":"/admin", "port":"8080", "username":"admin", "password":"wga", "comment":"", "link":"http://www.openwga.com/home/support/tutorials/going_live_from_openwga_developer_studio.en.html"}, + {"name":"Peardrop CMS", "protocol":"http", "url":"/admin.php", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"http://peardrop.coolmediatech.com/index.php/Documentation_%280.1.x%29"}, + {"name":"PHP-Nuke", "protocol":"http", "url":"/admin.php", "port":"80", "username":"God", "password":"Password", "comment":"", "link":"http://tldp.org/HOWTO/PHP-Nuke-HOWTO/phpmyadmin.html"}, + {"name":"Pier CMS", "protocol":"http", "url":"/?command=PULogin", "port":"80", "username":"admin", "password":"peir", "comment":"", "link":"http://www.piercms.com/doc/faq#193819363"}, + {"name":"Pimcore", "protocol":"http", "url":"/admin", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":""}, + {"name":"Pixie CMS", "protocol":"http", "url":"/admin", "port":"80", "username":"admin", "password":"pixie123", "comment":"", "link":"http://www.getpixie.co.uk/support/article/manual-installation/"}, + {"name":"ProcessWire", "protocol":"http", "url":"/processwire", "port":"80", "username":"admin", "password":"processwire2", "comment":"", "link":"https://processwire.com/demo/"}, + {"name":"Quest Software inSync", "protocol":"http", "url":"/GoAdmin", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"http://support-public.cfm.software.dell.com/ddbeaa24-9332-4506-bda8-aceeef47af34:602964.pdf"}, + {"name":"Radiant CMS", "protocol":"http", "url":"/admin", "port":"80", "username":"admin", "password":"radiant", "comment":"", "link":"http://www.codingforums.com/archive/index.php/t-187082.html"}, + {"name":"Serendipity CMS", "protocol":"http", "url":"/serendipity/serendipity_admin.php", "port":"80", "username":"John Doe", "password":"john", "comment":"", "link":"http://www.s9y.org/36.html"}, + {"name":"SilverStripe", "protocol":"http", "url":"/admin", "port":"80", "username":"admin", "password":"password", "comment":"", "link":"http://doc.silverstripe.org/en/developer_guides/security/authentication/"}, + {"name":"Sitefinity CMS", "protocol":"http", "url":"/Sitefinity/LoginPages/LoginForm", "port":"80", "username":"admin", "password":"Password", "comment":"", "link":""}, + {"name":"SolarWinds Web Helpdesk", "protocol":"https", "url":"/", "port":"5840", "username":"admin", "password":"admin", "comment":"", "link":"http://www.solarwinds.com/documentation/WebHelpDesk/docs/WHDAdminGuide12-2-0.pdf"}, + {"name":"Squiz CMS", "protocol":"http", "url":"/_admin", "port":"80", "username":"root", "password":"root", "comment":"", "link":"https://manuals.matrix.squizsuite.net/evaluate-squiz-matrix"}, + {"name":"SuperMicro IPMI BMC", "protocol":"http", "url":"/", "port":"80", "username":"ADMIN", "password":"ADMIN", "comment":"", "link":"http://supermicro.com/manuals/other/SMT_IPMI_Manual.pdf"}, + {"name":"Telligent Community", "protocol":"http", "url":"/telligent_evolution", "port":"80", "username":"admin", "password":"pa$$word", "comment":"", "link":"http://community.zimbra.com/documentation/w/documentation/3840.install-telligent-evolution"}, + {"name":"Umbraco", "protocol":"http", "url":"/umbraco/login.aspx", "port":"80", "username":"admin", "password":"default", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, +]} \ No newline at end of file From 2969d7b4a445ca470b463a56e1b1894ce72ed6d6 Mon Sep 17 00:00:00 2001 From: jakxx Date: Fri, 3 Apr 2015 18:30:44 -0400 Subject: [PATCH 18/23] typos --- list.json | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/list.json b/list.json index fb885dd..5c66027 100644 --- a/list.json +++ b/list.json @@ -3,15 +3,15 @@ {"name":"Barracuda SSL VPN Admin", "protocol":"http", "url":"/cgi-mod/index.cgi", "port":"8000", "username":"admin", "password":"admin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, {"name":"Cascade Server", "protocol":"http", "url":"/login.act", "port":"80", "username":"", "password":"", "comment":"", "link":"http://help.hannonhill.com/kb/security"}, {"name":"CivicSpace", "protocol":"http", "url":"/default/showLogon.do", "port":"80", "username":"ssladmin", "password":"ssladmin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, - {"name":"CMSimple", "protocol":"http", "url":"/?Welcome_to_CMSimple&login", "port":"80", "username":"", "password":"test", "comment":"", "link":"http://cmsimple.org/doku/en/?Installation___The_Installation", + {"name":"CMSimple", "protocol":"http", "url":"/?Welcome_to_CMSimple&login", "port":"80", "username":"", "password":"test", "comment":"", "link":"http://cmsimple.org/doku/en/?Installation___The_Installation"}, {"name":"Composite C1", "protocol":"http", "url":"/Administration", "port":"80", "username":"admin", "password":"admin", "comment":"Username may be admin@yourstore.com", "link":""}, {"name":"Daisy CMS", "protocol":"http", "url":"/login", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":""}, {"name":"Dell Integrated Remote Access Controller(Dell iDRAC)", "protocol":"https", "url":"/", "port":"443", "username":"root", "password":"calvin", "comment":"", "link":""}, {"name":"Dell SonicWall Analyzer", "protocol":"http", "url":"/sgms/login", "port":"80", "username":"admin", "password":"password", "comment":"", "link":"https://support.software.dell.com/sonicwall-analyzer/kb/sw9710"}, {"name":"dotCMS", "protocol":"http", "url":"/admin/", "port":"80", "username":"admin@dotcms.com", "password":"admin", "comment":"", "link":"http://dotcms.com/docs/latest/logging-in"}, - {"name":"dotCMS < 1.9.2", "protocol":"http", "url":"/admin/", "port":"80", "username":"test@dotcms.com", "password":"test", "comment":"", "link":"http://kukui-cup-dotcms.googlecode.com/svn-history/r12/wiki/DevelopersGuide.wiki"}, - {"name":"DotNetNuke (host)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"host", "password":"dnnhost", "comment":"", "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, - {"name":"DotNetNuke (admin)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"admin", "password":"dnnadmin", "comment":"", "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, + {"name":"dotCMS < 1.9.2", "protocol":"http", "url":"/admin/", "port":"80", "username":"test@dotcms.com", "password":"test", "comment":""}, "link":"http://kukui-cup-dotcms.googlecode.com/svn-history/r12/wiki/DevelopersGuide.wiki"}, + {"name":"DotNetNuke (host)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"host", "password":"dnnhost", "comment":""}, "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, + {"name":"DotNetNuke (admin)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"admin", "password":"dnnadmin", "comment":""}, "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, {"name":"Ektron CMS400.Net (admin)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"documentation.ektron.com/CMS400/v70/adminmanual.pdf"}, {"name":"Ektron CMS400.Net (builtin)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"builtin", "password":"builtin", "comment":"", "link":"documentation.ektron.com/CMS400/v70/adminmanual.pdf"}, {"name":"Ektron CMS400.Net (jedit)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"jedit", "password":"jedit", "comment":"", "link":"http://documentation.ektron.com/cms400/v802/mobile_help/Advanced/Content/Getting%20Started/Logging%20In%20and%20Out/loginandout_login.htm"}, From 445de2a00b36f297ce26781667eea4e072eaa468 Mon Sep 17 00:00:00 2001 From: jakxx Date: Fri, 3 Apr 2015 18:31:16 -0400 Subject: [PATCH 19/23] typos again --- list.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/list.json b/list.json index 5c66027..8d4d077 100644 --- a/list.json +++ b/list.json @@ -16,7 +16,7 @@ {"name":"Ektron CMS400.Net (builtin)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"builtin", "password":"builtin", "comment":"", "link":"documentation.ektron.com/CMS400/v70/adminmanual.pdf"}, {"name":"Ektron CMS400.Net (jedit)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"jedit", "password":"jedit", "comment":"", "link":"http://documentation.ektron.com/cms400/v802/mobile_help/Advanced/Content/Getting%20Started/Logging%20In%20and%20Out/loginandout_login.htm"}, {"name":"Ektron CMS400.Net (jmember)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"jmember", "password":"jmember", "comment":"", "link":"http://documentation.ektron.com/cms400/v802/mobile_help/Advanced/Content/Getting%20Started/Logging%20In%20and%20Out/loginandout_login.htm"}, - {"name":"EPrints", "protocol":"http", "url":"/perl/users/home", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"", + {"name":"EPrints", "protocol":"http", "url":"/perl/users/home", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":""}, {"name":"Exsite Webware", "protocol":"http", "url":"/cgi-bin/", "port":"80", "username":"admin", "password":"password", "comment":"", "link":""}, {"name":"eZ Publish", "protocol":"http", "url":"/", "port":"80", "username":"admin", "password":"publish", "comment":"", "link":"https://doc.ez.no/eZ-Publish/User-manual/4.x/The-administration-interface/The-login-page"}, {"name":"Frog CMS", "protocol":"http", "url":"/admin/", "port":"80", "username":"admin", "password":"password", "comment":"", "link":""}, From d0c72b43b9849b056e1a405c09ca4fa4c2b12b4b Mon Sep 17 00:00:00 2001 From: jakxx Date: Fri, 3 Apr 2015 18:33:48 -0400 Subject: [PATCH 20/23] whitespace --- list.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/list.json b/list.json index 8d4d077..1790dc3 100644 --- a/list.json +++ b/list.json @@ -1,6 +1,6 @@ {"defaults":[ - {"name":"Barracuda SSL VPN", "protocol":"http", "url":"/default/showLogon.do", "port":"80", "username":"ssladmin", "password":"ssladmin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, - {"name":"Barracuda SSL VPN Admin", "protocol":"http", "url":"/cgi-mod/index.cgi", "port":"8000", "username":"admin", "password":"admin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, + {"name":"Barracuda SSL VPN", "protocol":"http", "url":"/default/showLogon.do", "port":"80", "username":"ssladmin", "password":"ssladmin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, + {"name":"Barracuda SSL VPN Admin", "protocol":"http", "url":"/cgi-mod/index.cgi", "port":"8000", "username":"admin", "password":"admin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, {"name":"Cascade Server", "protocol":"http", "url":"/login.act", "port":"80", "username":"", "password":"", "comment":"", "link":"http://help.hannonhill.com/kb/security"}, {"name":"CivicSpace", "protocol":"http", "url":"/default/showLogon.do", "port":"80", "username":"ssladmin", "password":"ssladmin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, {"name":"CMSimple", "protocol":"http", "url":"/?Welcome_to_CMSimple&login", "port":"80", "username":"", "password":"test", "comment":"", "link":"http://cmsimple.org/doku/en/?Installation___The_Installation"}, From 976c7e7c1806088ca37e1514841fe883f55ba608 Mon Sep 17 00:00:00 2001 From: jakxx Date: Fri, 3 Apr 2015 18:35:56 -0400 Subject: [PATCH 21/23] too many brackets --- list.json | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/list.json b/list.json index 1790dc3..bbdedf1 100644 --- a/list.json +++ b/list.json @@ -9,9 +9,9 @@ {"name":"Dell Integrated Remote Access Controller(Dell iDRAC)", "protocol":"https", "url":"/", "port":"443", "username":"root", "password":"calvin", "comment":"", "link":""}, {"name":"Dell SonicWall Analyzer", "protocol":"http", "url":"/sgms/login", "port":"80", "username":"admin", "password":"password", "comment":"", "link":"https://support.software.dell.com/sonicwall-analyzer/kb/sw9710"}, {"name":"dotCMS", "protocol":"http", "url":"/admin/", "port":"80", "username":"admin@dotcms.com", "password":"admin", "comment":"", "link":"http://dotcms.com/docs/latest/logging-in"}, - {"name":"dotCMS < 1.9.2", "protocol":"http", "url":"/admin/", "port":"80", "username":"test@dotcms.com", "password":"test", "comment":""}, "link":"http://kukui-cup-dotcms.googlecode.com/svn-history/r12/wiki/DevelopersGuide.wiki"}, - {"name":"DotNetNuke (host)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"host", "password":"dnnhost", "comment":""}, "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, - {"name":"DotNetNuke (admin)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"admin", "password":"dnnadmin", "comment":""}, "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, + {"name":"dotCMS < 1.9.2", "protocol":"http", "url":"/admin/", "port":"80", "username":"test@dotcms.com", "password":"test", "comment":"", "link":"http://kukui-cup-dotcms.googlecode.com/svn-history/r12/wiki/DevelopersGuide.wiki"}, + {"name":"DotNetNuke (host)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"host", "password":"dnnhost", "comment":"", "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, + {"name":"DotNetNuke (admin)", "protocol":"http", "url":"/login.aspx", "port":"80", "username":"admin", "password":"dnnadmin", "comment":"", "link":"https://support.managed.com/kb/a333/dotnetnuke-usernames-and-passwords-change-passwords.aspx"}, {"name":"Ektron CMS400.Net (admin)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"documentation.ektron.com/CMS400/v70/adminmanual.pdf"}, {"name":"Ektron CMS400.Net (builtin)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"builtin", "password":"builtin", "comment":"", "link":"documentation.ektron.com/CMS400/v70/adminmanual.pdf"}, {"name":"Ektron CMS400.Net (jedit)", "protocol":"http", "url":"/workarea/login.aspx", "port":"80", "username":"jedit", "password":"jedit", "comment":"", "link":"http://documentation.ektron.com/cms400/v802/mobile_help/Advanced/Content/Getting%20Started/Logging%20In%20and%20Out/loginandout_login.htm"}, From 987938286684f5499666bd4d62a70409bc138270 Mon Sep 17 00:00:00 2001 From: jakxx Date: Fri, 3 Apr 2015 22:18:09 -0400 Subject: [PATCH 22/23] removed trailing comma --- list.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/list.json b/list.json index bbdedf1..a1b5922 100644 --- a/list.json +++ b/list.json @@ -53,5 +53,5 @@ {"name":"Squiz CMS", "protocol":"http", "url":"/_admin", "port":"80", "username":"root", "password":"root", "comment":"", "link":"https://manuals.matrix.squizsuite.net/evaluate-squiz-matrix"}, {"name":"SuperMicro IPMI BMC", "protocol":"http", "url":"/", "port":"80", "username":"ADMIN", "password":"ADMIN", "comment":"", "link":"http://supermicro.com/manuals/other/SMT_IPMI_Manual.pdf"}, {"name":"Telligent Community", "protocol":"http", "url":"/telligent_evolution", "port":"80", "username":"admin", "password":"pa$$word", "comment":"", "link":"http://community.zimbra.com/documentation/w/documentation/3840.install-telligent-evolution"}, - {"name":"Umbraco", "protocol":"http", "url":"/umbraco/login.aspx", "port":"80", "username":"admin", "password":"default", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, + {"name":"Umbraco", "protocol":"http", "url":"/umbraco/login.aspx", "port":"80", "username":"admin", "password":"default", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"} ]} \ No newline at end of file From 22f40c84862331f48c681ca32f7cfcb225a8e07f Mon Sep 17 00:00:00 2001 From: jakxx Date: Tue, 21 Apr 2015 21:00:50 -0400 Subject: [PATCH 23/23] Added IPMI devices --- list.json | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/list.json b/list.json index a1b5922..17273b4 100644 --- a/list.json +++ b/list.json @@ -1,4 +1,5 @@ {"defaults":[ + {"name":"ASUS iKVM BMC", "protocol":"http", "url":"/", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"https://community.rapid7.com/community/metasploit/blog/2013/07/02/a-penetration-testers-guide-to-ipmi"}, {"name":"Barracuda SSL VPN", "protocol":"http", "url":"/default/showLogon.do", "port":"80", "username":"ssladmin", "password":"ssladmin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, {"name":"Barracuda SSL VPN Admin", "protocol":"http", "url":"/cgi-mod/index.cgi", "port":"8000", "username":"admin", "password":"admin", "comment":"", "link":"https://techlib.barracuda.com/sslvpn/admininterfaces"}, {"name":"Cascade Server", "protocol":"http", "url":"/login.act", "port":"80", "username":"", "password":"", "comment":"", "link":"http://help.hannonhill.com/kb/security"}, @@ -20,9 +21,11 @@ {"name":"Exsite Webware", "protocol":"http", "url":"/cgi-bin/", "port":"80", "username":"admin", "password":"password", "comment":"", "link":""}, {"name":"eZ Publish", "protocol":"http", "url":"/", "port":"80", "username":"admin", "password":"publish", "comment":"", "link":"https://doc.ez.no/eZ-Publish/User-manual/4.x/The-administration-interface/The-login-page"}, {"name":"Frog CMS", "protocol":"http", "url":"/admin/", "port":"80", "username":"admin", "password":"password", "comment":"", "link":""}, + {"name":"Fujitsu Integrated Remote Management Controller", "protocol":"http", "url":"/", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"https://community.rapid7.com/community/metasploit/blog/2013/07/02/a-penetration-testers-guide-to-ipmi"}, {"name":"Geeklog", "protocol":"http", "url":"/admin", "port":"80", "username":"Admin", "password":"password", "comment":"", "link":"https://www.geeklog.net/forum/viewtopic.php?showtopic=59178"}, {"name":"Hippo CMS 7.7", "protocol":"http", "url":"/cms", "port":"80", "username":"siteuser", "password":"siteuserpass", "comment":"", "link":"http://www.onehippo.org/7_7/library/upgrade-from-7.6/upgrade-7.6-to-7.7-authorization.html"}, {"name":"Hippo CMS", "protocol":"http", "url":"/cms", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"http://vijaykiran.com/2009/06/customizing-hippo-cms-getting-started/"}, + {"name":"IBM Integrated Management Module (IMM)", "protocol":"http", "url":"/", "port":"80", "username":"USERID", "password":"PASSW0RD", "comment":"pass is with a zero not an o", "link":"https://community.rapid7.com/community/metasploit/blog/2013/07/02/a-penetration-testers-guide-to-ipmi"}, {"name":"Jumbo", "protocol":"http", "url":"/jumbo/loginpage.php", "port":"80", "username":"admin", "password":"password", "comment":"", "link":""}, {"name":"Kentico CMS", "protocol":"http", "url":"/CMSSiteManager", "port":"80", "username":"administrator", "password":"", "comment":"", "link":"http://devnet.kentico.com/downloads/kenticocms_quickguide.pdf"}, {"name":"KnowledgeTree Community Edition", "protocol":"http", "url":"/knowledgetree/", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":""}, @@ -38,6 +41,7 @@ {"name":"OpenCms", "protocol":"http", "url":"/opencms/opencms/system/login/", "port":"8080", "username":"Admin", "password":"admin", "comment":"", "link":"http://www.opencms.org/en/development/installation/server.html"}, {"name":"OpenKM", "protocol":"http", "url":"/OpenKM", "port":"8080", "username":"okmAdmin", "password":"admin", "comment":"", "link":"http://forum.openkm.com/viewtopic.php?f=4&t=3711"}, {"name":"OpenWGA CMS", "protocol":"http", "url":"/admin", "port":"8080", "username":"admin", "password":"wga", "comment":"", "link":"http://www.openwga.com/home/support/tutorials/going_live_from_openwga_developer_studio.en.html"}, + {"name":"Oracle/Sun Integrated Lights Out Manager (ILOM)", "protocol":"http", "url":"/", "port":"80", "username":"root", "password":"changeme", "comment":"", "link":"https://community.rapid7.com/community/metasploit/blog/2013/07/02/a-penetration-testers-guide-to-ipmi"}, {"name":"Peardrop CMS", "protocol":"http", "url":"/admin.php", "port":"80", "username":"admin", "password":"admin", "comment":"", "link":"http://peardrop.coolmediatech.com/index.php/Documentation_%280.1.x%29"}, {"name":"PHP-Nuke", "protocol":"http", "url":"/admin.php", "port":"80", "username":"God", "password":"Password", "comment":"", "link":"http://tldp.org/HOWTO/PHP-Nuke-HOWTO/phpmyadmin.html"}, {"name":"Pier CMS", "protocol":"http", "url":"/?command=PULogin", "port":"80", "username":"admin", "password":"peir", "comment":"", "link":"http://www.piercms.com/doc/faq#193819363"},
NameURLUsernamePasswordCommentLink
Sitefinity CMS/Sitefinity/LoginPages/LoginFormadminPasswordhttp://www.sitefinity.com/devnet/kb.aspxIf you see telerik.rad it's sitefinityhttp://exploitsdownload.com/search/sitefinity
Sitekit CMS/admin  http://www.sitekit.net  
SMW+ rootm8nixhttp://www.smwplus.com/index.php/Help:SMW%2B http://exploitsdownload.com/search/smwplus
SolarWinds Web Helpdeskhttps://ip_address:5480/adminadmin http://www.solarwinds.com/documentation/WebHelpDesk/docs/WHDAdminGuide12-2-0.pdf
SPIP      
Squiz CMS/_editadmin/editor/approverpasswordhttp://cms.squizsuite.net/quick-start-guide/admin password should be changedhttp://exploitsdownload.com/search?q=squiz
Squiz Matrix/_adminrootroothttp://matrix.squizsuite.net/quick-start-guide/ http://exploitsdownload.com/search?q=squiz
CoreMedia WCM    <- Magic Quadrant Masterbaters 
Cotonti/admin.php    http://exploitsdownload.com/search/cotonti
Daisy/loginadminadmin   
Dell SonicWall Analyzer/sgms/loginadminpassword https://support.software.dell.com/download/downloads?id=5477891&ei=fhQTVZHWMZO1sQTxo4KAAw&usg=AFQjCNG2yGbefRqEta9Nhq73or00BYFY4Q&bvm=bv.89217033,d.eXY&cad=rja
Django-cms/adminadmin   http://exploitsdownload.com/search/django
Dokuwiki/dokuwiki?do=login    http://exploitsdownload.com/search/dokuwiki
Dotclear/dotclear/admin/    http://exploitsdownload.com/search/dotclear
SPIP      
Squiz CMS/_editadmin/editor/approverpasswordhttp://cms.squizsuite.net/quick-start-guide/admin password should be changedhttp://exploitsdownload.com/search?q=squiz
Squiz Matrix/_adminrootroothttp://matrix.squizsuite.net/quick-start-guide/ http://exploitsdownload.com/search?q=squiz
SuperMicro IPMI BMC/ADMINADMINhttp://supermicro.com/manuals/other/SMT_IPMI_Manual.pdf
TangoCMSindex.php?url=session or /session  http://tangocms.org/announcements?page=2  
Telligent Community/telligent_evolutionadminpa$$word check for /solr/admin 
Textpattern/textpattern/index.php or /textpattern/    http://exploitsdownload.com/search?q=textpattern