Monday, 28 September 2015

"Add Testimonial" ~ remote File upload vulnerability.

Posted by   on

"Add Testimonial" ~  remote File upload vulnerability.
Google Dork : 2011 all rights reserved.Website Designed by GanjaDaddy.com



[#1]
Open website ..

[#2] Go to this URL : testimonial/add.html.php 


For example :  http://Site.com/testimonial/add.html.php

[#3]
Now Upload Your Deface or any file

[#4] to view you upload file go to /images/testimonial/ , you'll se index of files here ... click on last file, its urs !!

[#5] enjOy =) Leave a Comment beLow if you Like it

Demo :

http://sdhealingarts.com/testimonial/add.html.php?
http://slangmediagroup.com/testimonial/add.html.php?
http://thepharmcollective.com/testimonial/add.html.php?
http://www.ganjadaddy.com/demo/firestation/testimonial/add.html.php?

Result : http://slangmediagroup.com/images/testimonial/testim_20111218213043
http://www.ganjadaddy.com/demo/firestation//images/testimonial/testim_20111218215509

19 comments:
Write comments
  1. This comment has been removed by a blog administrator.

    ReplyDelete
  2. This comment has been removed by a blog administrator.

    ReplyDelete
  3. This comment has been removed by a blog administrator.

    ReplyDelete
  4. This comment has been removed by a blog administrator.

    ReplyDelete
  5. This comment has been removed by a blog administrator.

    ReplyDelete
  6. This comment has been removed by a blog administrator.

    ReplyDelete
  7. This comment has been removed by a blog administrator.

    ReplyDelete
  8. This comment has been removed by a blog administrator.

    ReplyDelete
  9. This comment has been removed by a blog administrator.

    ReplyDelete
  10. This comment has been removed by a blog administrator.

    ReplyDelete
  11. This comment has been removed by a blog administrator.

    ReplyDelete
  12. This comment has been removed by a blog administrator.

    ReplyDelete
  13. This comment has been removed by a blog administrator.

    ReplyDelete
  14. This comment has been removed by a blog administrator.

    ReplyDelete
  15. This comment has been removed by a blog administrator.

    ReplyDelete
  16. This comment has been removed by a blog administrator.

    ReplyDelete
  17. This comment has been removed by a blog administrator.

    ReplyDelete
  18. This comment has been removed by a blog administrator.

    ReplyDelete
  19. This comment has been removed by a blog administrator.

    ReplyDelete

Get Updates about Latest Hacks, Exploits, Applications and Softwares. http://www.devilscafe.in/
Join Our Newsletter