Fake Hit Generator 2.2 - Arbitrary File Upload

EDB-ID:

10230

CVE:

N/A


Author:

DigitALL

Type:

webapps


Platform:

PHP

Date:

2009-11-25


# Exploit Title: Fake Hit Generator Shell Upload Vulnerability

# Date: 25.12.2009

# Author: DigitALL

# Greetz: Zombie KroNickq HackSpy and All 1923turk.biz Members

# Version: 2.1

# Dork: "Upload unique IP List:" and "The Ultimate Fake Hit Generator - BOOST YOUR ALEXA RANK"

# Application: Please Proxy List Upload ( Your Shell )

# Shell: /proxy/shell.php

# Shells Demo: http://site/alexa/proxy/xx.php