[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Sports Clubs Web Panel 0.0.1 Remote File Upload Vulnerability

Author
Stack
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-3653
Category
web applications
Date add
11-09-2008
Platform
unsorted
=============================================================
Sports Clubs Web Panel 0.0.1 Remote File Upload Vulnerability
=============================================================


--==+============================================================================+==--
--==+   Sports Clubs Web Panel 0.0.1 Remote File upload                          +==--   
--==+============================================================================+==--

 [*] Discovered By: Stack
 [+] Discovered On: 11 Sep 2008
 [+] Download: http://sourceforge.net/project/downloading.php?group_id=188949&use_mirror=ovh&filename=sportspanel-0.0.1a.tar.gz&50146370

hello guys in this script admin need make a directory name grounds in public directory of script for the 'Add Ground' functions work
so then its will be useful for us use this exploit :d
Exploit :
http://localhost/sport/?p=grounds-add
after write any nae in Ground Name select
upload you php script and go to
http://localhost/sport/grounds/
you can see your php file uploaded



#  0day.today [2024-12-25]  #