|Title: WordPress Easy Comment Upload (Plugin) Exploit |
Open Google Search and type the given below dork.
Index of /wp-content/plugins/easy-comment-uploads
Select website from search results. The exploit URL will be like this,
You will Got Upload Option there. Now Upload Your Deface and to check it here site.com/wp-content/uploads/2011/05/yourfilehere
In some websites you can Upload your deface in txt only and you can upload shell in 50% sites only. Upload shell in image format i.e.,