ReVou Twitter Clone - Arbitrary File Upload

EDB-ID:

7531

Author:

S.W.A.T.

Type:

webapps

Platform:

PHP

Published:

2008-12-21

#########################################################
---------------------------------------------------------
Portal Name: ReVou Twitter Clone Arbitrary File Upload Vulnerability
Version: All version
Vendor : http://www.revou.com/
Demo: http://www.revou.com/demo/
Author : S.W.A.T. , svvateam@yahoo.com
Vulnerability : wWw.BaTLaGH.CoM
---------------------------------------------------------
#########################################################
[Mime Check Bypass]:
Create A File Called name.php And Fill It As Below:
----------
GIF89aP;
[php_shell_code]
----------
Save This File !
----------
Go To "My photo" (link: http://www.revou.com/demo/settings/my_photo)

Select Your Shell & Upload !
----------
Done ! :-)
---------------------------------

# milw0rm.com [2008-12-21]