Thursday 28 March 2013

hack websites using FCK editor upload vulnerability






hello guys 

in this tutorial i will show you how to hack websites using FCK editor upload 

vulnerability 

dork to find vulnerability 

 intitle:"FCKeditor - Uploaders Tests"

a FCK editor vulnerable site looks like this 



On the top you will find the file uploader set it to PHP then select your .txt

 deface and click on send it to the server. If the file is uploaded successfully 

you will get a alert saying "File Uploaded with no errors" and on the right side

 there is "uploaded file URL" there you will get the link of the file you 

uploaded . Some sites allow you yo upload files .html and  .jpg.



















No comments:

Post a Comment