Hello Friends Chinmoy Here With a new web hacking tutorial!
Name :- New Web Hacking Vulnerability :- WordPress Remote File Upload

Name :- New Web Hacking Vulnerability :- WordPress Remote File Upload
In WordPress we can upload our deface page using Remote File Upload Vulnerabilitywith Asset Manager. Asset Manager is a plugin that allows you to upload your files Just simply follow the simple steps to hack the wordpress website.
1. Open google and search inurl:Editor/assetmanager/assetmanager.asp 2. Now open any result you will found look like bellow snapshot.
3. Just click on browse and upload your deface page.
1. Open google and search inurl:Editor/assetmanager/assetmanager.asp 2. Now open any result you will found look like bellow snapshot.
3. Just click on browse and upload your deface page.

Demo: Asset Manager Deface page
No comments:
Post a Comment