Home of Ethical White Hat Hackers
Would you like to react to this message? Create an account in a few clicks or log in to continue.



 
HomeclosedLatest imagesRegisterLog in

 

 Drupal Remote File Upload Vulnerability

Go down 
2 posters
AuthorMessage
V1P3R
WhiteHat Support
WhiteHat Support
V1P3R


Posts : 76
White Hat Points : 202
White Hat Reputation : 10
Join date : 2013-07-30

Drupal Remote File Upload Vulnerability  Empty
PostSubject: Drupal Remote File Upload Vulnerability    Drupal Remote File Upload Vulnerability  Icon_minitimeWed Aug 14, 2013 11:02 am

1) Search this google dork:
Code:
inurl:"/imce?dir="
intitle:"File Browser"
2) Click on any link that its title is "File Browser" among with something else

so you will find Screen like this
[You must be registered and logged in to see this image.]

3) Click on the "Upload" button

4) Upload your Deface Page

5) Click the link in the box to View the URL ...
Back to top Go down
xL337
VIP
VIP
xL337


Posts : 19
White Hat Points : 43
White Hat Reputation : 6
Join date : 2013-08-27

Drupal Remote File Upload Vulnerability  Empty
PostSubject: Re: Drupal Remote File Upload Vulnerability    Drupal Remote File Upload Vulnerability  Icon_minitimeWed Aug 28, 2013 7:43 am

Old but still working. Thanks for sharing! Smile
Back to top Go down
 
Drupal Remote File Upload Vulnerability
Back to top 
Page 1 of 1
 Similar topics
-
» Joomla 1.5.12 tinybrowser Remote File Upload
» VoltEdit CMS SQL Injection Admin Login Bypass & Shell Upload Vulnerability
» FileChucker File Upload Vulnerability
» Exploit Title: WordPress "photocrati-theme" Remote File Upload "RFU"
»  Upload File On Shop737

Permissions in this forum:You cannot reply to topics in this forum
Home of Ethical White Hat Hackers :: White Hat Hackers Community :: Hacking & Security Tutorials-
Jump to: