Step wise :-phUploader Remote File Upload Vulnerability

Posted on Thursday, November 17, 2011 by Tenderfoot


This is purely for educational purpose



Step:1
www.google.com 
Step:2
intitle:Powered By phUploader  ( paste this and search for Vulnerable site)
Step:3
vulnerable site will have path ending with upload.php
Ex:-http://sitename/ path/upload.php
Ex:- http://sitename/upload.php 

Step 4
You can upload .jpg .png .gif anf .png files only
Step 5:
You can further explore this vulnerability to deface website.

The aim of exploitation is to fix not to deface.
 
Source :-http://www.devilscafe.in/2011/11/phuploader-remote-file-upload.html
Credit :- http://www.devilscafe.in/2011/11/phuploader-remote-file-upload.html

 This blog’s author is not responsible for any damage, lost or other kinds of problems caused by this article. The responsibility of using the above information lies only on the reader.

No Response to "Step wise :-phUploader Remote File Upload Vulnerability"

Leave A Reply