Deface WordPress Orange Themes
April 01, 2019
1 Comment
Dork : inurl:/wp-content/themes/kernel-theme
inurl:/wp-content/themes/bordeaux-theme
inurl:/wp-content/themes/bulteno-theme
inurl:/wp-content/themes/rayoflight-theme
Csrf Online : Klik Jancok
Kalian Dorking Dolo Di Google :"v
Pilih Salah Satu Web/Target Tambahin Exploitnya
Vuln?= Ada bacaan Error
Contoh Seperti Gambar Di Bawah Ini
Lalu Kalian Bukan Csrf Onlinenya
Dengan Post File : orange_themes
Example :
Kemudian Klik Submit Nah Terus Upload Deh Shell/Sc Lu :') Kalo Sukses Nanti Keluar Nama File Kalian
Example :
Nb : Apabila Lu Upload Ext:php terus muncul bacaan no.php Berarti Ga bisa up Shell wkplwkpksllmsko :'( SO SAD JANCOK
Location File?:'v /wp-content/uploads/[tahun]/[bulan]/file lu
Example : http://youngpetro.org/wp-content/uploads/2019/06/-.html
Nih Gue Kasih Live Target :'v
http://youngpetro.org/wp-content/themes/kernel-theme/functions/upload-handler.php
http://www.agenziaannalisa.it/wp-content/themes/kernel-theme/functions/upload-handler.php
http://howbc.org/wp-content/themes/rayoflight-theme/functions/upload-handler.php
Semoga Bermanfaat Yah Kntl
Thanks To All Member Ghost Riddiculous Team
mantap bg
ReplyDeletevisit bek