[x] dork :
inurl:"default_image.asp"
inurl:"default_imagen.asp"
inurl:"/box_image.htm"
[x] Tested on : anything OS
[x] exploit - Shell Example : shell.asp;.jpg, shell.php;.jpg, *.gif, *.jpg, *.png, *.pdf, *.zip, *.html
[x]note - then upload them to your shell using firefox addons temperdata. or NOT!! ^_^
[x]demo :
https://www.thinkheartland.com/CMS/admin/default_Image.asp
http://www.dautphetal.de/edit/default_asset.asp
inurl:"default_image.asp"
inurl:"default_imagen.asp"
inurl:"/box_image.htm"
[x] Tested on : anything OS
[x] exploit - Shell Example : shell.asp;.jpg, shell.php;.jpg, *.gif, *.jpg, *.png, *.pdf, *.zip, *.html
[x]note - then upload them to your shell using firefox addons temperdata. or NOT!! ^_^
[x]demo :
https://www.thinkheartland.com/CMS/admin/default_Image.asp
http://www.dautphetal.de/edit/default_asset.asp
Anda baru saja membaca artikel yang berkategori Hacking
dengan judul Image uploader vulnerablelity. Anda bisa bookmark halaman ini dengan URL http://catatan-lutfi.blogspot.com/2012/07/image-uploader-vulnerablelity.html. Terima kasih!
Ditulis oleh:
Lutfi rahman - Selasa, 17 Juli 2012
Belum ada komentar untuk "Image uploader vulnerablelity"
Posting Komentar