Tizag Countdown Creator 3 - Insecure Upload
Author: ahmadbady
type: webapps
platform: php
port:
date_added: 2008-12-04
date_updated: 2017-01-06
verified: 1
codes: OSVDB-51305;CVE-2008-6492
tags:
aliases:
screenshot_url:
application_url: http://www.exploit-db.comtizag-countdown_Version_3.zip
****(remote file upload)****
script: tizag-countdown_Version_3
***************************************************************************
download from:http://www.tizag.com/downloads/tizag-countdown_Version_3.zip
***************************************************************************
www.site.com/path/index.php (upload file.php)
shell= www.site.com/path/pics/file.php
***************************************************
Author: ahmadbady
my mail: kivi_hacker666@yahoo.com
***************************************************
# milw0rm.com [2008-12-05]