Thursday, March 7, 2013

vulnerability-in-ajax-file-manager



AJAX is about updating parts of a web page, without reloading the whole page.



  •  First of all open Google Search Engine.
  • Now type this google dork in it inurl:/plugins/ajaxfilemanager/ 
  • Now hit Search and open any website shown in the result.
  • Now Put  ajaxfilemanager/ajaxfilemanager.php after /plugins/ in url.
  • It will look like as below :
  • Now Find Upload and Upload Your shell/Deface/file 
  • To view you File find /Uploaded/ directory in Website by using your Drac-101code.







No comments:

Post a Comment