0

Websites တြင္ Shell တင္နည္း [file upload forms]

Tuesday, August 5, 2014
Share this Article on :

Hi everyone
in this article i will show you how to hack website using file upload forms
before stating you have to find some vulnerable site to upload files like
shells.By uploading shell you can takeover the database of a site.

Here are some dorks for finding file upload forms

Index of /fckeditor/editor/filemanager/connectors/
inurl:"/imce?dir=" intitle:"File Browser"
inurl:rte/my_documents/my_files
inurl:/my_documents/my_files/

intitle:Max's AJAX File Upload - AJAX F1
 Powered by AJAX F1

 intitle:File Uploader intext:Powered by AJAX F1

now click on any results 

  
And you will enter to the link where you can upload your files

Now upload the shell

before uploading change the extension of the shell to jpg or html

because it most of the sites do not accept files in .php or .asp etc .


 
I hope you like this article




Artikel Terkait:

0 comments:

Related Posts Plugin for WordPress, Blogger...

မိမိဘေလာ့ကို submit မွန္မွန္ လုပ္ေပးျခင္းျဖင့္ မိမိဘေလာ့ ျမန္ဆန္မည္ရွင္းလင္းမည္


My Blogger TricksAll Blogger TricksTechtunes