Deface Poc Found Uploader
Tuesday, February 25, 2020
Edit
Inti dari proof of concept (POC) ini adalah adanya bug uploader di server, entah itu karena kesalahan programmer, atau karena kelalaian sang administrator.
Dork: inurl:upload/uploads intext:upload
inurl:uploader.php
inurl:uploadfile.html
etc.
Exploit: none
Dork dulu pake dork diatas
Vuln?, nanti bakalan nemu tombol upload
Ya tinggal lu upload, akses shell tergantung webnya
nih contoh web vuln
http://chdong.top/aroz/upload/uploads
https://thefiletree.com/jan/audio/
Dork: inurl:upload/uploads intext:upload
inurl:uploader.php
inurl:uploadfile.html
etc.
Exploit: none
Dork dulu pake dork diatas
Vuln?, nanti bakalan nemu tombol upload
Ya tinggal lu upload, akses shell tergantung webnya
nih contoh web vuln
http://chdong.top/aroz/upload/uploads
https://thefiletree.com/jan/audio/