Max's File Uploader File Upload Vulnerability Jan 15 2008 03:12PM
xcross87 gmail com


# Max's File Uploader File Upload Vulnerability

# Homepage: http://www.phpf1.com/

# Download: http://www.phpf1.com/download.html?item=9

# Dork: intitle:"Max's File Uploader" (maybe ^^)

# Found by : Xcross87 | xcross87.info | hcegroup.net

Simply upload a shell (*.php), it will be stored in the same level.

# Example:

http://[site]/[path]/index.php

Upload a shell: xshell.php

-> http://[site]/[path]/xshell.php

[^$^] Enjoy !

# - by Xcross87 - #

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus