Banner 468 x 60px

LikeViews

Saturday 21 January 2012

KindEdior Remote File Upload Exploit

Comments
Google Dork:
 
  • intitle:index of? inurl:kindeditor
  • inurl:examples/uploadbutton.html
  
Exploit: http://www.vulnrabewebsite.com/path/kindeditor/examples/uploadbutton.html

Choose any website from google search results and go-to vulnerable URL like http://www.vulnrabewebsite.com/kindeditor/examples/uploadbutton.html now click on upload and select your file, it will be automaticly uploaded,and you'll get your uploaded file Link/URL there, and if you can't get your uploaded file link then go-to http:// www.vulnrabewebsite.com/path/kindeditor/attached/file/
and you'll see alot of folders there, click on last folder and in the folder click on last file, its your uploaded file. Enjoy & Must leave a Comment if you want more exploit like that, because 
new article's posting depends on old article's popularity

Live Demo :
http://www.arimlab.com/themes/default/js/kindeditor/examples/uploadbutton.html
 
Convex Coders © 2011 Convex-Coders. Supported by Code 104 and tech PANELS