# # # # # # Exploit Title: Advertiz PHP Script 0.2 - Cross-Site Request Forgery (Update Admin User&Pass) # Dork: N/A # Date: 06.09.2017 # Vendor Homepage: http://www.dijiteol.com/ # Software Link: http://www.dijiteol.com/p-Advertiz-PHP-Script--No-Accounts-Required--i-2.html # Demo: http://dijiteol.com/demos/advertiz/ # Version: 0.2 # Category: Webapps # Tested on: WiN7_x64/KaLiLinuX_x64 # CVE: N/A # # # # # # Exploit Author: Ihsan Sencan # Author Web: http://ihsan.net # Author Social: @ihsansencan # # # # # # # Proof of Concept:
# # # # #