HumarTutor - Cara Deface WordPress Plugins Complete Gallery Manager File Upload Vulnerability. Sebebarnya ini exploit lama wkwkw.. Tapi masih banyak yang Vuln . pinter pinter ngembangin dork aja sih
Dork :
inurl:/plugins/complete-gallery-manager/frames
Exploit :
upload-images.php
Example :
site.com/wp-content/plugins/complete-gallery-manager/frames/upload-images.php
Syarat :
1. Xampp
2. Pc / Laptop 😄
Langkah :
1. Yang pasti dorking dulu.
Tag : Cara Bypass, Bypass Admin, Bypass Shell, WordPress download, Instal WordPress, WordPress.org Hacked, WordPress Vuln Theme, Plugins All In One Security, Cara Hack Wordpress, Defacer Indonesia, Indonesian Defacer, Hacked, Government subdomain hacked, Hacker Indonesia, Cara Upload Shell, Shell c99, Shell b374k, Hacker (2016), Download film hacker, Cara Carding
2. Exploit kalo vuln {"error":"No files were uploaded."}.
3. Upload Shell dengan csrf html / php cli / CSRF Online
4. Kalo success ada tulisan {"success":true;} trus ada file mu / tempat shell berada
5. Masuk deh ke shell . kwkw
6. Terserah mau diapain
Kurang jelas? tanya di komentar