Hoşgeldin Misafir

Alumni Management System 1.0 - Unrestricted File Upload to Remote Code Execution Vuln

Asım Gürsoy

mersin
27 Mar 2020
8,833 Mesaj

Aktiflik

Seviye

Deneyim

TIM / GÖREV:
Alumni Management System 1.0 - Unrestricted File Upload to Remote Code Execution Vulnerability--


Kod:
# Exploit Title:  Alumni Management System 1.0 - Unrestricted File Upload To RCE
# Exploit Author: Aakash Madaan
# Vendor Homepage: https://www.sourcecodester.com/php/14524/alumni-management-system-using-phpmysql-source-code.html
# Software Link: https://www.sourcecodester.com/download-code?nid=14524&title=Alumni+Management+System+using+PHP%2FMySQL+with+Source+Code
# Affected Version: Version 1
# Tested on: Parrot OS
 
Step 1. Login to the application with admin credentials
 
Step 2. Click on "System Settings" page.
 
Step 3. At the image upload field, browse and select any php webshell.
Click on upload to upload the php webshell.
 
Step 4. Visit "http://localhost/admin/assets/uploads/" and select your
upload phpwebshell.
 
Step 5. You should have a remote code execution.
 
#  0day.today [2020-12-19]  #