Victor cms 1.0 authenticated arbitrary file upload Vulnerability / Exploit
/
/
/
Exploits / Vulnerability Discovered : 2020-05-19 |
Type : webapps |
Platform : php
This exploit / vulnerability Victor cms 1.0 authenticated arbitrary file upload is for educational purposes only and if it is used you will do on your own risk!
[+] Code ...
# Exploit Title: Victor CMS 1.0 - Authenticated Arbitrary File Upload
# Google Dork: N/A
# Date: 2020-05-19
# Exploit Author: Kishan Lal Choudhary
# Vendor Homepage: https://github.com/VictorAlagwu/CMSsite
# Software Link: https://github.com/VictorAlagwu/CMSsite/archive/master.zip
# Version: 1.0
# Tested on: Windows 10
Description: The GET parameter '/admin/users.php?source=add_user' is vulnerable Arbitary File Uploads