___________________________________________________ | | Exploit Title: school cms File Upload Vulnerability | Exploit Author: Ashiyane Digital security Team | Vendor Homepage : https://www.sourcecodester.com/php/5400/school-website-cms.html | Software Link: https://www.sourcecodester.com/sites/default/files/download/arukumar/school_cms.zip | Version: 1.0.0 | Date: 2017-11-18 | Category: Webapps | Language: PHP | Tested on: Kali-Linux / FireFox |__________________________________________________ | PoC : | | Vulnerable page : http://localhost/PATH/FCKeditor/editor/filemanager/connectors/uploadtest.html | | Path of file : http://localhost/userfiles/File name |__________________________________________________ | | Discovered By : M.R.S.L.Y |__________________________________________________