Bluethrust Clan Scripts v4 R17 CSRF & PHP Shell Upload (Admin)
There is no token check when changing a current user rank thus allowing CSRF to take place. When the code below is executed by an authenticated admin it will grant the defined user Commander/Admin rights. After CSRF has taken place you can login to your account like normal. Once logged in click 'My Profile>Administrator options>Modify Current Theme' or use site.com/members/console.php?cID=61. You can then insert the PHP code of your choosing into Footer. In order to add or edit code you are required to provide a special Admin Key that was defined during install. The key isn't needed as the check is faulty and can be left blank. Just insert your code and click Edit Theme. It will say the key was incorrect, but the PHP code is still inserted.