LionWiki 3.X (index.php) Shell Upload Vulnerability
Posted on 05 April 2010
=================================================== LionWiki 3.X (index.php) Shell Upload Vulnerability =================================================== # Exploit Title: LionWiki 3.X (index.php) upload shell # Date: monday 05 april 2010 # Author: ayastar # Software Link: http://lionwiki.0o.cz # Version: 3.X # Tested on: ubuntu 9.10 (english ) # CVE : [yes] # Code : [exploit code] hi brother's and all muslims this is my first bug :) dork : "powered by LionWiki " exploit : http://victim/path/index.php?action=upload http://victim.com/path/?action=upload ah (note)" you can't upload you're shell code if admin create password " # Inj3ct0r.com [2010-04-05]