- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 6830
- Проверка EDB
-
- Пройдено
- Автор
- DENTRASI
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- cve-2008-6822
- Дата публикации
- 2008-10-24
Код:
//Title - NEPT Image Uploader shell upload
//Vendor - newearthpt.freehostia.com
//Version - 1.0
//Status - vendor has been notified
//Author - Dentrasi
//Description
It is possible to upload a php script to the remote site.
1. Select a php file for upload
2. Select it for upload, and tamperdata the request
3. Change the Content-Type from 'application/octet-stream' to 'image/jpeg'
4. If the link provided gives a 404, add 'upload/' before the file name
# milw0rm.com [2008-10-24]
- Источник
- www.exploit-db.com