header-logo
Suggest Exploit
vendor:
GameRoom
by:
JAWAD (JIKO)
7,5
CVSS
HIGH
Unprotected Admin Panel
264
CWE
Product Name: GameRoom
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2020

GameRoom Admin Not Protect Exploit

The GameRoom script from ezonescripts.com has an unprotected admin panel, allowing attackers to upload a malicious shell.php.gif or shell.php.swf file.

Mitigation:

Ensure that the admin panel is properly protected with authentication.
Source

Exploit-DB raw data:

  |=-----------------------------------------------------=|
  |=-------------=[  JIKO |No-exploit.Com|  ]=-----------=|
  |=-----------------------------------------------------=|
[~]-----------|00|
NAme    :JIKO (JAWAD)
Home    :No-exploit.Com
Mail    : !x!
[~]-----------|01|
    -{Script}
    name :GameRoom
    link :http://www.ezonescripts.com

[~]-----------|02|
    -{3xpl01t}
    Admin Not protect you can upload Shell
    shell.php.gif
    shell.php.swf
[~]-----------|03|
    -{Greetz}
    Cyber-Zone,HxH,Hussin X,sniper code,Stack,HiSoKa,The SadHacker,kasper,  SkuLL-HacKeR
    |No-Exploit.com Members
-------------------------------------