Data/File - upload and Management Arbitrary File Upload

EDB-ID:

15249

CVE:

N/A




Platform:

PHP

Date:

2010-10-14


Become a Certified Penetration Tester

Enroll in Advanced Web Attacks and Exploitation , the course required to become an Offensive Security Web Expert (OSWE)

GET CERTIFIED

: # Exploit Title: Data/File upload and management local shell upload                        :
: # Date: 14/10/2010                                                                         :
: # Author: saudi0hacker                                                                     :  
: # Software Link:  http://resellscripts.info/index.php?route=product/product&product_id=137 :
: # Version: All version                                                                     :
: # Tested on: linux b0x                                                                     : 
: # Greetz to : All of my Friends                                                            :
----------------------------------------------------------------------------------------------

 [~] STEP 1 > Go to target link

     http://localhost/dataupload

 [~] STEP 2 > upload your shell as [shell.php.jpg :: or some times :: shell.php]

 [~] Th3 End