Advertisement
in73ct0rd3vil

FCK EDITOR Exploit

May 24th, 2015
1,048
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.74 KB | None | 0 0
  1. ################################ IN73CT0R D3VIL ################################################
  2. ################################ ################################################
  3. ################################ ################################################
  4. ################################ ################################################
  5.  
  6. My page: https://www.facebook.com/devilforevryone
  7. Team Page: https://www.facebook.com/734M.H5H
  8. Team Group : https://www.facebook.com/groups/734M.H5H
  9. Check us on zone-db :*
  10. ------------------------------======[[[[[ Hell shield hackers Security Team ]]]]]=====------------------------------------------
  11.  
  12. Greets : Psychotic-overlo@d, Mr.404, P0ison op3rat0r, Defalt, L@zarus, diablo :-)
  13. This POC is specially out to public for my Heller's only
  14. This private exploit was before 2 month.But i am releasing in public version now :)
  15.  
  16. Okay the vulnerability which i will talk about is tiny_mce Vulnerability. It's most common and privately exist vulnerability in most china and vietnam domains.
  17.  
  18. The Dork : /core_main/editor/editor/filemanager/connectors/uploadtest.html
  19.  
  20. After open a victim's site. Select "PHP" in File Uploader type
  21. In UPLOAD FILE .. Upload your shell (gif,phtml, or php) Or HTML deface page.
  22.  
  23. To see your file : http://site.com/web1/file_editor/"Your file" *_*
  24.  
  25. [+]POC: http://www.nongnahan.skn3.net/web1/file_editor/hacked(1).txt
  26. http://www.watsangworn.net/web1/file_editor/hacked(1).txt
  27. http://www.tubsong.net/web1/file_editor/hacked(1).txt
  28. http://www.nogbua.com/web1/file_editor/hacked(1).txt
  29. http://www.sesao30.go.th/web1/file_editor/hacked.txt
  30. http://udontutor.com/web1/file_editor/hacked(1).txt
  31. http://www.st1.ac.th//web1/file_editor/hacked(1).txt
  32. http://kohkaew101.com/web1/file_editor/hacked(1).txt
  33. http://pasang1.net/web1/file_editor/hacked(1).txt
  34. http://mitsmp.sukhothai2.go.th/we…/file_editor/hacked(1).txt
  35. http://www.anubansikho.com/web1/file_editor/hacked(1).txt
  36. http://www.mpp3.ac.th/lms/web1/file_editor/hacked(1).txt
  37. http://www.suraoklong1.com/web1/file_editor/hacked(1).txt
  38. Mirrors[+]:
  39. http://www.aljyyosh.org/mirror.php?id=229565
  40. http://www.aljyyosh.org/mirror.php?id=229564
  41. http://www.aljyyosh.org/mirror.php?id=229563
  42. http://www.aljyyosh.org/mirror.php?id=229562
  43. http://www.aljyyosh.org/mirror.php?id=229561
  44. http://www.aljyyosh.org/mirror.php?id=229560
  45. http://www.aljyyosh.org/mirror.php?id=229559
  46. http://www.aljyyosh.org/mirror.php?id=229558
  47. http://www.aljyyosh.org/mirror.php?id=229557
  48. https://zone-db.com/mirror/id/9952
  49.  
  50.  
  51. "BUS DUA MEIN YAAD RAKHNA... jai hind.. Proud Indian, Proud HELLER" ./IN73CT0R D3VIL
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement