Yosh all balik lagi ma ane :v Kali ini wa mau kasih turtor depes metode WordPress Awesome Support Arbitrary File Upload Vulnerability. Simak aja ea sampek selesai :v
Siapin bahan" nya dolo ea :v
1. Dork : inurl:/wp-content/plugins/awesome-support/
2. Exploit nya : www.site.co.li/[path]/wp-content/plugins/awesome-support/plugins/jquery.fineuploader-3.5.0/server/php/example.php
3. Shell : kalo gk punya donlot disene
4. CSRF : Kalo gk mau ribet" bikin, wa ada online nya kok :v cek DIMARI
5. Script depes cari di gugel aja :v
Langsung sadja :v
1. Dorking pakek dork diatas
2. Masukin Exploit nya :v Vuln tandanya kek gini
5. Sukses ea :v
Sekian dari ane
Kalo ada salah/kurang jelas bisa tanya" di koment
Thanks :*





bang cara isi yg postfile nya bagaimana?
ReplyDeleteqqfile
Delete