- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 7456
- Проверка EDB
-
- Пройдено
- Автор
- S.W.A.T.
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- cve-2008-6900
- Дата публикации
- 2008-12-14
Код:
[~] Availscript Article Script Remote File Upload Vulnerability
[~]
[~] ----------------------------------------------------------
[~] Discovered By: S.W.A.T. [email protected]
[~]
[~] Home: www.batlagh.com
[~]
[~] Script Page: http://www.availscript.com/article_script.php
[~] -----------------------------------------------------------
Xpl:
1.First Register Into The Site ( link: www.site.com/[path]/signup.php )
2.Login With Your Email & Password
3.After That Go To "Add Pen/Author Name" ( link: www.site.com/[path]/memberarea/addpen.php )
& Write Your Author & Select Your Shell.php like: c99.php
4.Your Shell Will Be Appear In This Folder ( link: www.site.com/[path]/photos/ )
5.Your Shell Will Be Renamed With Random Text like: cc1bd-c99.php
6.Hack The Site ;)
Demo:
http://www.availscript.com/article_script/
[~] Special Thanks To:
Str0ke, All My Friends, Iranian Hackers & All Muslim
# milw0rm.com [2008-12-14]
- Источник
- www.exploit-db.com