Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:18866
HistoryJan 16, 2008 - 12:00 a.m.

Max's File Uploader File Upload Vulnerability

2008-01-1600:00:00
vulners.com
26

Max's File Uploader File Upload Vulnerability

Homepage: http://www.phpf1.com/

Download: http://www.phpf1.com/download.html?item=9

Dork: intitle:"Max's File Uploader" (maybe ^^)

Found by : Xcross87 | xcross87.info | hcegroup.net

Simply upload a shell (*.php), it will be stored in the same level.

Example:

http://[site]/[path]/index.php

Upload a shell: xshell.php

-> http://[site]/[path]/xshell.php

[^$^] Enjoy !

- by Xcross87 -