======================================================================= # osCSS 1.2.1 (REMOTE FILE UPLOAD) Vulnerabilities ======================================================================= ######################################################################## # Vendor: http://www.oscommerce.com/ # Date: 2010-05-27 # Author : indoushka # Thanks to : Inj3ct0r.com,Exploit-DB.com,SecurityReason.com,Hack0wn.com ! # Contact : indoushka@hotmail.com # Home : www.arab-blackhat.co.cc # Dork : E-Commerce Engine Copyright © 2005 osCSS # Bug : Remote File Upload # Tested on : windows SP2 Français V.(Pnx2 2.0) ######################################################################## # Exploit By indoushka osCSS 1.2.1 - Remote File Upload

UPLOAD FILE:


CREATE FILE:
FILE NAME:
  (ex. shell.php)
FILE CONTENTS: