DNN: SITE HACKING TUTORIAL

STEP 1.
First open ur mozila firebox --> Then right click on bookmark toolbar > then select " New Bookmark" then Type name "javascript" anD past this javascipt in "Location" box
Then select "Add"
Here is your javascript: javascript:__doPostBack('ctlURL$cmdUpload','')

STEP 2.


Then try this google dork..

Googlr Dork:
 inurl:DNN(Link Gallery) 
 allinurl: “/Providers/HtmlEditorProviders/Fck/fcklinkgallery.aspx  
Then click search.


Select 1 site.

Step 3.

You will get a Menu bar page.

Select "File (A File On Your Site)" Then click on your Javascript what u already saved.
oki you will get a uploder.Then > select Browser and select ur asp shell.Then >Select upload selected site.

Step 4.

After Upload your asp shell goto url box And replace ur Link with this "/portals/0/shell.asp;shell.jpg" .

Press Enter.

Step 5.

ok you are on Now Admin root panel.

Go to "Root Folder: D:\inetpub\vhosts\site.com\httpdocs\dnn\"

Select "UPLOAD FILE TO D:\INETPUB\VHOSTS\TEDDYAOR.COM\HTTPDOCS\DNN\"

You will get a uploder.Then > select Browser > select your deface File > select upload

After upload you deface page goto " ursite.com/yourdefacepagename.html "