School CMS 1.0.0 File Uplaod

School CMS version 1.00 suffers from a remote file upload vulnerability.


MD5 | 374a506e3f640be7708db9087426c809

 ___________________________________________________
|
| Exploit Title: school cms File Upload Vulnerability
| Exploit Author: Ashiyane Digital security Team
| Vendor Homepage : https://www.sourcecodester.com/php/5400/school-website-cms.html
| Software Link: https://www.sourcecodester.com/sites/default/files/download/arukumar/school_cms.zip
| Version: 1.0.0
| Date: 2017-11-18
| Category: Webapps
| Language: PHP
| Tested on: Kali-Linux / FireFox
|__________________________________________________
| PoC :
|
| Vulnerable page : http://localhost/PATH/FCKeditor/editor/filemanager/connectors/uploadtest.html
|
| Path of file : http://localhost/userfiles/File name
|__________________________________________________
|
| Discovered By : M.R.S.L.Y
|__________________________________________________

Related Posts

Comments