Webify eDownloads Cart - Arbitrary File Deletion

EDB-ID:

21269

CVE:



Author:

JIKO

Type:

webapps


Platform:

PHP

Date:

2012-09-12


Become a Certified Penetration Tester

Enroll in Advanced Web Attacks and Exploitation , the course required to become an Offensive Security Web Expert (OSWE)

GET CERTIFIED

#########################################################################################
[!x!] Informations:  
Name           : Webify edownloads cart
Download       : http://www.webify.ws/edownloadscart
Vulnerability  : Delete Arbitrary File 
VulnerabilityAuthor         : JIKO(JAWAD)
Contact        : jalikom@hotmail.com
Site           : No-ExploiT.CoM (Is Back)
Notes          : No-ExploiT.CoM Miss
#########################################################################################
[!x!] Bug: Delete Arbitrary File Vulnerability   
you can delete file uploaded in post and upload your files (for php if allowed you can :))
#########################################################################################
[!x!] Exploit:  Exploit: http://server/edownloadscart/uploads/X/ change X with number of post 
########################################################################################
[!x!] To: All friendsCyber_Devil Allah with you members [No-exploit.Com]