====================================================================== [x] Title : "Element-IT Flash fileuploader <= Aritbary File Upload Vulnerability" [x] Author : Z190T [x] Contact : mahruz.id[at]gmail[at]com [x] Vendor : http://www.element-it.com/multiple-file-upload/flash-uploader.aspx [x] Platform : PHP and asp [x] dork : inurl:"/Flash/fileupload.swf" [x] Tested on : anything Operating System,,, **** Exploit Details **** - Uploading with FlashPlayer **** Attachtement **** - http://[localhost]/Flash/fileupload.swf - Add Files to Uploading.. - Shell Example : shell.php, shell.asp, shell.html, shell.php.jpg, shell.asp.jpg, or,, [txt] extentions!! **** Preview **** - http://[localhost]/[ayo]/[nyari]/[dulu] **** catatan **** - sediakan flash player 'and' - kopi dan rokoknya!. ^_^ ====================================================================== [+] Thx TO [+] [x] All member of EXPLOIT-ID.com, ungu.com, THK-forumo.org, etc... [x] Temen yang saya Idolakan : haX0r.x0x, Surabaya Getar, kaMtiEz, eXeSoul, Caddy-Dz, KedAns-Dz, metasploit, KnocKout, etc... ======================================================================
18 Jun 2011
Element-IT Flash fileuploader <= Aritbary File Upload Vulnerability
Labels:
Exploit
Friends Blog
Sponsors :
Best Google Covers | Desktop Wallpaperslk | PSD Graphics
Copyright © 2012. bedegar - All Rights Reserved
Copyright © 2012. bedegar - All Rights Reserved