[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Memberkit 1.0 Remote PHP File Upload Vulnerability

Author
Lo$er
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-4585
Category
web applications
Date add
01-01-2009
Platform
unsorted
==================================================
Memberkit 1.0 Remote PHP File Upload Vulnerability
==================================================


=================================================================
=================Memberkit 1.0 Remote File Upload================
=================================================================

Vendor: http://www.memberkit.com/
Discovered: 12-30-08
Discovered By: Lo$er

====Exploit====

After registered and logged in, a user can upload any type of file in "My Picture Album" where a picture would usually be uploaded. 
For example, if the file "shell.php" was uploaded to somesite.com, its location would likely be

http://somesite.com/uploads/pictures/pictures/[user]/[picture number]_shell.php 

The location of the file can also easily be found by using your browser's "view image" function where the image would appear regularly. 

===<3===



#  0day.today [2024-07-05]  #