# Dork : inrul:/wp-content/uploads/yass/1_uploadfolder/big/
# 1 Search Google Dork and Choose a Target
###########
Code exploit :
###########
https://pastebin.com/raw/1qLXjPwJ
######
# 2 Upload Your File ==== File.html ######
# 3. Vuln ? ada tanda
WP_Error Object ( [errors] => Array ( [invalid_image] => Array ( [0] => unable to open file `/tmp/magick-C-pK9cbg': No such file or directory @ error/constitute.c/ReadImage/583 ) ) [error_data] => Array ( [invalid_image] => /home4/swheeler/public_html/site/wp-content/uploads/yass/1_uploadfolder/big/404.html ) ) Error
# 4. jadi akses filenya site.com/wp-content/uploads/yass/1_uploadfolder/big/404.html
0 Response to "Arbitrary File Upload Vulnerability in YAS Slideshow"
Post a Comment