==================================================================================================================================== | # Title : KesionCMS ASP v9.5 Reinstall Add Admin Exploit | | # Author : indoushka | | # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 105.0.(32-bit) | | # Vendor : https://www.kesion.com/ | | # Dork : Powered by KesionCMS | ==================================================================================================================================== poc : [+] Dorking İn Google Or Other Search Enggine. [+] copy & past this exploit listed below into a text file and save it with ".html" extension [+] at Line 09 & 16 change the domain name of target . [+] The infected folder is /install/ This is due to direct unauthorized access to the fourth stage (?action=s4)of the script installation The fourth stage (?action=s4)is responsible for configuring the setting of the site administrator. For this, the vulnerability can be exploited through the direct link or using the exploitation written below [+] Exploit Hacked By indoushka
网站参数配置
填写管理员信息
Greetings to :========================================================================================================================= | jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * shadow_00715 * LiquidWorm* | | =======================================================================================================================================